• On GameSpot: Wii Fit tells 10-year-old she's fat
September 14, 2007 2:44 PM PDT

Facebook banner ad serves an exploit

Posted by Robert Vamosi
  • Print

Security researcher Roger Thompson got a surprise the other night when he borrowed a computer to view a friend's Facebook blog--Internet Explorer wanted to download some malicious Microsoft Data Access Components (MDAC) objects. That didn't seem right, so he tried another computer, and said "I got extra copies of the browser starting, and ads being served."

Thompson is no stranger to such tricks. He heads Exploit Prevention Labs, a company that specializes in finding and mitigating browser exploits found on Web pages. This attack really surprised him. It uses an exploit of MS06-014, which means if your computer has been updated with the latest patches from Microsoft issued since September 2006, you won't experience a thing. But if you haven't updated your Windows computer in more than one year, you'll be subjected to a barrage of unwanted adware.

On an infected machine, a Google homepage now shows adware.

(Credit: Roger Thompson/Explabs)
On vulnerable machines, Thompson found that the banner ad on Facebook makes a call to bannerconnect, bannerconnect makes a call to yieldmanager, yieldmanager makes a call to valuead, and valuead makes a call to megapromition, which throws an exploit (MS06-014) and runs an adware installer. Thompson's latest blog explains the whole process in greater detail. The end result is that once infected, your Internet Explorer home page displays additional windows serving various ads.

Recent posts from News Blog
NASA, Google Maps track Southern California wildfires
Sprint first to offer HTC Touch Pro
Flipping out: RIM BlackBerry Pearl Flip 8220 debuts
Sprint HTC Touch Diamond outed early
Woman to virtual ex: 'I won't be ignored!'
Add a Comment (Log in or register) 1 comment
Well...
by jelloburn September 14, 2007 3:54 PM PDT
... sounds like if you haven't update your version of Windows in a
year, you are kind of asking for problems.

At the same time, Facebook probably should take of the problem
and inform the advertiser of the situation.
Reply to this comment
advertisement

In the news now

Photos: Gadgets we're thankful for

Some of your favorite Crave contributors reveal which gadget or aspect of technology they're feeling most grateful for these days.



BlackBerry Storm packs more of a drizzle

review Phone has an innovative touch screen that provides tactile feedback, but the onscreen keyboard is a bit cramped, and the smartphone can be sluggish, and speakerphone quality is choppy.



About News Blog

Recent posts on technology, trends, and more.

Add this feed to your online news reader

News Blog topics

advertisement
advertisement

Inside CNET News

Scroll Left Scroll Right