MSMVPS.COM
The Ultimate Destination for Blogs by Current and Former Microsoft Most Valuable Professionals.

TRUSTe finds Rogue Distributor Exploiting Security Flaws

TRUSTe Blog: RelevantKnowledge Removed from TDP White List for Three Months

"After notification by several sources, TRUSTe investigated a distributor installing comScore’s RelevantKnowledge on consumer machines through a security exploit."

"The RelevantKnowledge application was observed being installed via a security exploit amongst several other applications. The following describes the series of events observed:

  • The user visited an unauthorized distribution web site.
  • A series of hidden frames were loaded containing links to dozens of other websites, including sites containing code designed to test and trigger security exploits on the user’s machine.
  • by way of these exploits, a cascade of maliciously installed software was downloaded/installed onto the user’s machine without any form of consent. This software included RelevantKnowledge."

Sunbelt Blog: comScore gets a spanking


Posted Sun, Jul 22 2007 23:04 by tashi
Filed under: ,