View Single Post
Old 06-16-2008, 10:37 PM  
Socks
Confirmed User
 
Industry Role:
Join Date: May 2002
Location: Toronto
Posts: 8,475
Another trick web hackers use is to have page refresh on timeouts.. The page will refresh and look exactly the same, with a slightly different URL (on the same domain) so you wouldn't even notice it happened.. But then all the links load an .EXE download popup on that secondary URL. The site owner may never notice, if they don't let their page timeout and click the links. The timeout can be long too, so it would rarely happen, but go undetected for a long time on a lot of domains.

I found this out once for someone here at GFY and they had to fix their sites, remove all access points, delete accounts, change passwords, yadda yadda.
Socks is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote