phpnuke.org hijacked to serve malware
The ThreatSeeker Network of Websense Security Labs is warning that the well-known website phpnuke.org is under hackers' control and is serving multiple exploits.
Explained the security researchers that PHP-Nuke at one time functioned as open-source software; however, currently it's used for commercial purposes. Yet it continues to be widely used while its chief online site makes useful resources available for end-users. Consequently, it's hardly astonishing that blackhat attackers are targeting it.
Meanwhile, elaborate reports available on the hack suggest that the attackers inserted a malevolent iframe into phpnuke.org website. This iframe takes control of the web-browser that then opens a malicious website on which many iframe diversions land users on an extremely obfuscated web-page. Moreover, attackers in this scam have used the Eleonore attack code for disseminating the malware.