Security Alerts blog

120 Compromised Advertisement Servers Put Millions of Internet Users at Risk

An ongoing “malvertising” campaign dubbed “Tag Barnakle” was identified as the breach point of more than 120 Advertisement servers over the past year.

The threat actors aim to inject code to host Adware that redirects users to domains under threat actors’ control, exposing them to more malware.

The adversaries behind the Tag Barnakle campaign are upgrading their tools to target mobile devices in addition to the initial targets, such as the open-source advertising server Revive.

The Impact

If someone were to engage with the Adware, their devices could become compromised and potentially used as a base for further attacks.

The remediation

As the malvertising campaign is still active, thousands if not millions of devices are still at risk. Whilst there is no specific remediation, the following are recommendations on reducing the risk of compromise:

  1. Raise awareness in an organisation, and social engineering encompasses more than phishing. Potential victims need to be made aware of the dangers of clicking on Adware as well.
  2. Keep all antivirus software’s and software versions up to date and make sure that all necessary detection settings are enabled.
  3. Applications and software should only be downloaded and or purchased from a reputable source.

Source: The Hacker News

Risk Crew

Share
Published by
Risk Crew

Recent Posts

ISO 42001: Key Insights You Need to Know

Introducing ISO 42001 – the world’s first international management system standard focused specifically on AI.…

4 months ago

ISO 27001 Requirements | Your Roadmap to Compliance

Data breaches and cyberattacks have become daily concerns for information security professionals and business leaders.…

4 months ago

How to Get Ready for a Penetration Test

It is an undeniable fact that all applications and infrastructures are essentially in need of…

6 months ago