Compromise turns Kaspersky site into malware hub
The US website for anti-virus provider Kaspersky was caught pushing malware to its users for three and a half hours on Sunday after it was compromised by criminal hackers.
The attack first came to light on three separate user forums frequented by Kaspersky users. According to some of the posts, Kaspersky officials initially denied any compromise took place.
“They are stating that I must have went to a phishing site or a site that looks like them,” one user wrote. “Sorry Kaspersky, I typed the correct URL above and was directed directly from your web site. I even went to my order email from Kaspersky I purchase 7-months ago.” On Tuesday, the Russian anti-virus firm came clean and admitted that hackers were able to compromise the kasperskyusa.com by exploiting a vulnerable third-party application. As a result, people who visited the site were redirected to a malicious webpage.