Jump to content
Matt

OpenX Advertising Network hacked and backdoor Injected

Recommended Posts

Posted

OpenX+Advertising+Network+hacked+and+backdoor+Injected.jpg

OpenX, a leader provider of digital and mobile advertising technology has accordingly served backdoor that are injected into the Code and allows hackers to control over your web browser.

German tech site the Heise notified Germany's computer emergency response team (CERT) this week about the OpenX Ad Server (2.8.10) backdoor, allowing an attacker to execute any PHP code via the "eval" and could have provided attackers full acces to their web sites.

The OpenX team has confirmed the breach and OpenX senior application security engineer Nick Soraccor said that two files in the binary distribution of 2.8.10 had been replaced with modified files that contained a remote code execution vulnerability.

opex-backdoor2.jpg

The attack code is written in PHP but is hidden in a JavaScript file that is part of a video player plugin (vastServerVideoPlayer) in the OpenX distribution.

OpenX+Advertising+Network+hacked+and+Malware+Injected+in+Code.jpg

This vulnerability only applies to the free downloadable open source product, OpenX Market ( exchange ) and OpenX Lift (SSP) are not affected.

Server administrator can find out if they are running the OpenX version that contains the backdoor by searching for PHP tags inside .js files.Researchers from Sucuri provide a simple command for this :

 $ grep -r --include "*.js"'<?php' DIRECTORYWHEREYOURSITEIS

This is not the first time when Opex.org has been hacked.Last year in March 2012 , it was hacked and served malware to users.

OpenX has now released OpenX source v2.8.11, which according to Soraccor, is a mandatory upgrade for all users of 2.8.10 that should be applied immediately.

Sursa TheHackerNews.Com

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...