Sauya lambar ayyukan Picreel da Alpaca Forms ya haifar da sasantawa na shafuka 4684

Mai binciken tsaro Willem de Groot ya ruwaitocewa sakamakon kutse na ababen more rayuwa, maharan sun sami damar shigar da mugun saka cikin lambar tsarin nazarin yanar gizo. Picreel da kuma buΙ—aΙ—Ι—en dandali don samar da siffofin yanar gizo masu mu'amala Alpaca Forms. Sauya lambar JavaScript ta haifar da sasantawa na rukunin yanar gizo 4684 ta amfani da waΙ—annan tsarin akan shafukansu (1249 - Picreel kuma 3435 - Alpaca Forms).

An aiwatar malic code tattara bayanai game da cika duk fom Ι—in gidan yanar gizo akan shafuka kuma zai iya, a tsakanin sauran abubuwa, haifar da shiga tsakani na shigar da bayanan biyan kuΙ—i da sigogin tantancewa. An aika bayanin da aka katse zuwa uwar garken font-assets.com a Ζ™arΖ™ashin sunan neman hoto. Har yanzu babu wani bayani game da yadda ainihin kayan aikin Picreel da cibiyar sadarwar CDN don isar da rubutun Alpaca Forms suka lalace. An sani kawai lokacin da aka kai hari kan Forms Alpaca, an maye gurbin rubutun da aka bayar ta hanyar hanyar sadarwar abun ciki ta Cloud CMS. Shigar da mugunta an camouflaged a matsayin tsararrun bayanai a ciki rage girman siga script (zaka iya ganin kwafin lambar a nan).

Sauya lambar ayyukan Picreel da Alpaca Forms ya haifar da sasantawa na shafuka 4684

Daga cikin masu amfani da ayyukan da aka lalata akwai manyan kamfanoni da yawa, ciki har da Sony, Forbes, Trustico, FOX, ClassesUSA, 3Dcart, Saxo Bank, Foundr, RocketInternet, Sprit da Virgin Mobile. Yin la'akari da gaskiyar cewa wannan ba shine farkon harin irin wannan ba (duba. abin da ya faru tare da maye gurbin StatCounter counter), an shawarci masu gudanar da rukunin yanar gizon su yi taka tsantsan yayin sanya lambar JavaScript ta Ι“angare na uku, musamman akan shafukan da suka shafi biyan kuΙ—i da tantancewa.

source: budenet.ru

Add a comment