RedTube Fixes Malware Security Breach

BURBANK, Calif. — RedTube announced this week via Twitter that it fixed a bug on its adult tube site that redirected users to malicious URLs and exposed them to Trojan horse viruses.

The highly trafficked MindGeek-owned property apparently was hacked via a malicious HTML iframe placed directly in the source code of the site and made invisible to the user.

The source code on RedTube's main page was modified in order to redirect the user to malicious URLs hosting the Angler Exploit Kit, according to security blog MalwareBytes, which first discovered and reported the breach. 

Once redirected, the software kicks in and tries to exploit Adobe's recently patched CVE-2015-0313 bug to run malicious code, MalwareBytes said.

Officials of MindGeek’s RedTube division, in a response to MalwareBytes, said that the attack occurred this past Sunday for a “brief period of time.”

“Our security systems immediately detected the breach, and we took direct action to rectify the situation in order to protect RedTube users,” MindGeek told MalwareBytes.

“RedTube pursues stringent privacy requirements and maintains the highest industry standards of privacy protection to secure not only their assets and properties, but to provide comprehensive protection of their customers’ data when visiting a RedTube-owned site.  

"RedTube is committed to providing their customers with an optimal online experience and the peace of mind when they are accessing a RedTube site.”

According to reports, RedTube is not the only adult tube site to have fallen victim to malware in recent months.

Another site, xHamster, was said to be serving up a Flash file that exploited a flaw via a malicious advertisement.

Related:  

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Written Erotica Platform 'Hevvn' Launches

Hevvn, a new platform aimed at erotica writers seeking to publish, promote, and profit from their work, launched Thursday.

Sssh.com's Angie Rowntree Speaks at Brown University

Sssh.com founder Angie Rowntree spoke at a Brown University class last week, discussing several topics around adult filmmaking.

Online Industry Veteran Joe E. Passes Away

Online industry veteran Joe E. has passed away, according to friends and industry associates.

Judge Acquits Backpage Defendants of Most Charges Before 2nd Retrial

A federal judge acquitted former co-owner of Backpage.com Michael Lacey and two co-defendants on most of the counts remaining from the protracted trial launched against the website operators by the Justice Department in 2018.

Adult Time Partners With Animation Studio 3DGspot

Adult Time has signed a deal to distribute content on its streaming platform from animation studio 3DGspot.

Georgia Gov. Brian Kemp Signs Age Verification Bill Into Law

Republican Gov. Brian Kemp signed into law on Tuesday a bill that includes Georgia’s version of the age verification of adult content provisions being sponsored around the country by anti-porn religious conservative activists.

AEBN Publishes Popular Searches by Country for February, March

AEBN has released the popular searches from its straight and gay theaters in more than three dozen countries during February and March.

HardWerk Relaunches Through YourPaysitePartner

HardWerk.com has relaunched through YourPaysitePartner (YPP).

Aylo Asks Judge to Trim Sweeping GDP-Related Lawsuit

Aylo asked a California federal judge during a hearing on Monday to drop trafficking claims from a sweeping lawsuit brought by a former GirlsDoPorn model.

California Republicans, Democrats Team Up to Advance Age Verification for Porn

Both Republicans and Democrats in the California Assembly’s Privacy and Consumer Protection Committee voted last week to move forward a version of the age verification bills being sponsored around the country by anti-porn religious conservative activists.

Show More