Hackers use Google Image Search for malware
Search giant Google's Image Search is now being used to distribute malware, with attackers using code injection to accomplish the job. Internet Storm Center researcher Bojan Zdrnja said that most of the attacks lead to sites offering fake antivirus programs.
"For (the) last couple of weeks we received quite a bit of reports of images on Google leading to (usually) FakeAV web sites. Google is doing a relatively good job removing (or at least marking) links leading to malware in normal searches, however, Google’s image search seem to be plagued with malicious links," Zdrnja said in a blog post.
He said that the attackers have been able to compromise legitimate web sites —usually Wordpress instllations— but can also exploit any widely spread software that has known vulnerabilities.