BlackOS: New Malicious Software Used by Cybercriminals to Redirect Traffic

  • 20 March 2014
  • 2 replies
  • 1351 views

Userlevel 7
Badge +54


 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
 
Cybercriminals sometimes rely on special software to redirect traffic from malicious or compromised sites to other websites. Such a tool is BlackOS, which was analyzed by experts from Trend Micro.

Malware developers started advertising BlackOS on underground forums in late February 2014. While they advertise it as being new, BlackOS is actually based on “Tale of the North,” a piece of software first identified by security researchers in September 2013.

“BlackOS and other similar packages are designed to automate the process of managing and exploiting websites easier. This allows a cybercriminal to squeeze out the most profit from his victims. It has a web interface which is used to manage the web traffic and its different features,” Trend Micro experts explained.
 
Full Article

2 replies

Userlevel 7
Badge +54
Excerpt:
 
"The redirection is carried out by injecting malicious IFrames into websites, Budd said, adding this can be done using one of several features available in BlackOS.

“[It] can also manage large lists of FTP credentials and [can] check each of the accounts' credentials for validity, as well as verifies each malicious website URL against AV vendors to see if anyone blocks the website,” Budd said.

One of the things that makes BlackOS particularly useful for miscreants is that it scans a large range of IPs for exploitable vulnerabilities, Budd said, explaining that the attackers are not dialing in on specific targets."
 
Full Article
Userlevel 5
I don't like BlackOS.

Reply