JPEG Exploit Targeting Porn Newsgroups

CYBERSPACE — The first attacks using the Windows JPEG flaw have shown up on adult-oriented newsgroups, according to warnings issued by Internet security organizations today.

Usenet-related site EasyNews published a notice today that pornographic images containing hidden code were posted to at least 10 of the alt.binaries newsgroups, including alt.binaries.erotica.breasts and alt.binaries.erotica.beanie-babies.

The images first started to be posted at around 7 p.m. on Sunday, according to Godzilla, an administrator at EasyNews.

The corrupted images, which look exactly the same as a normal image, exploits the recently-announced JPEG flaw in Windows’ Graphic Device Interface Plus (GDI+) with a buffer overflow attack.

“Once this JPEG overflowed GDI+, it phoned home, connected to an FTP site and downloaded almost 2 megs of stuff,” stated Godzilla.

After downloading the files, the malicious code sets the infected computer up as a server and installs an IRC client.

According to Godzilla, 93 users were logged into the FTP site when he checked it last.

The release of the infected images came less than a week after sample code appeared on the Internet that explained how to exploit the GDI+ JPEG flaw.

According to the F-Secure Antivirus Research Team, the corrupted images don’t seem to be attempting to spread themselves.

“These JPEGs did not replicate, so this is not a virus,” the team wrote in their weblog. “Apparently, they tried to use these JPEGs to download Trojans to vulnerable computers… but the download sites should be down by now.”

Even though the threat posed by the these specific postings may have passed, F-Secure is concerned that it might signal a large problem on the way.

“Things are heating up,” wrote Mikko, a member of F-Secure’s antivirus team. “I have a nasty feeling we might sooner or later see a massmailer worm using a JPEG image as the attachment.”

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Australian Conservatives Raise Concerns About US-Born Online Censor

Long after progressive free speech advocates in Australia questioned E-Safety Commissioner Julie Inman Grant over her campaigns to target adult content, conservatives and libertarians are now raising concerns about the powers granted to the country’s top censor — an unelected former tech exec born in the U.S. — with some calling for her ouster.

Cupcake Girls, Aylo Partner on Educational Video Series for Performers

The Cupcake Girls and Aylo have teamed up to produce a series of educational videos focused on safety standards for adult performers.

My.Club Appoints Nicole Aniston Newest Brand Ambassador

My.Club has named Nicole Aniston its newest brand ambassador.

Elevated X Implements Age Verification Solution, Integration API

Elevated X is now offering age verification services (AVS) through an API.

MojoHost Unveils 'Star Wars Day' Promo

MojoHost will celebrate “Star Wars Day” on Saturday by offering a special discount on new purchases of dedicated servers, VPS and CDN prepay plans throughout the month of May.

2024 XBIZ Miami Show Schedule Announced

XBIZ is pleased to announce the release of the full show schedule for XBIZ Miami, the adult industry's biggest summer conference, set to take place May 13-16.

Video: FSC's Alison Boden Testifies Before California Assembly Committee Regarding Age Verification

Free Speech Coalition Executive Director Alison Boden testified before the California Assembly Judiciary Committee on Tuesday, in opposition to the state’s version of the age verification bills being sponsored around the country by anti-porn religious conservative activists.

Princess Mindy Is LoyalFans' 'Featured Creator' for May

LoyalFans has named Princess Mindy as its Featured Creator for May.

Republicans Behind Oklahoma's New Age Verification Law Gleeful About Potential Pornhub 'Exit'

Republican Gov. Kevin Stitt has signed into law Oklahoma’s version of the age verification legislation being sponsored around the country by anti-porn religious conservative activists.

Woodhull Freedom Foundation Debuts 'Fact Checked by Woodhull' Program

The Woodhull Freedom Foundation has launched its new "Fact Checked by Woodhull" program, which uses peer-reviewed research, compiled and analyzed by professional researchers, to debunk myths weaponized to justify the repression of sex, sexuality and gender expression.

Show More