July 14th, 2006
Saliva Causes Stomach Cancer
By Jimmy Daniels
Contributing Writer, RealTechNews
But only when swallowed in small amounts over a long period of time. - George Carlin
Okay, it’s a misleading title, but it certainly applies in this case. What case? Spamming of search engines, and using known techniques to push blogspot blogs to the top of the serps and using obfuscated or “garbled” JavaScript to dump the users who land on those pages to porn sites and clog up their machine with crap. Users see more and more spam and get used to it, and end up clicking on this crap trying to find what they are looking for, heck it looks like the rest of the results and they are on one of the big search engines, how bad could those pages be?
1) Party unknown figures out how to optimize Blogspot pages to achieve high rankings in MSN portal Search Engine Results Pages (SERPS) for popular terms known as keywords, in particular keywords around World Cup coverage.
2) This person uses Google’s Blogspot hosting. It has been noted before that Blogspot hosting allows users to insert JavaScript into the head of the HTML page, creating a vulnerable environment.
3) Party unknown implements a complex server-side, auto-rotation system on a domain hosted elsewhere.
4) Party unknown accomplishes “cloaking” the Blogspot URLs, hiding the auto-rotation system. The pages rank high in many MSN search results for targeted keywords.
5) Users conducting queries on MSN or users who arrive on the tainted blogspot URLs are redirected to various pages. In this particular example some sites display explicit pornographic content in addition to offering software downloads with a documented history of security risk. Source: Spywareguide Blog
We Say: So, how does someone exploit blogspot and MSN this way? Blogspot allows JavaScript to be inserted in the header of the blog, for whatever reason, and this could allow them to do any number of “bad things” to users arriving from these serps, and this, or these enterprising young individuals figured out how to get these pages to the top of MSN, and, in this case, they were exploiting the World Cup and taking advantage of the extra traffic. Google did search the blogspot blogs and removed the sites using this JavaScript, but why do they continue to allow it to be included in blogs to begin with?













Wayne Porter on Attention Revenue » Blog Archive » Did MSFT Pwn The Press? says:
[…] / 5000 Brilliant Points to The Unknown Blogger- OK. OK. OK. KEVIN MURPHY!! Late Entry: One press publication “got it”- RealTechNews- Independant Tech I stress the Indy…(not counting Search Engine Watch and smattering of blogs.) Ars Technical, Blogging, Google Watching, Kevin Murphy, realtechnews, technologyPopularity: 3% [?]Share This Permalink […]
October 29th, 2007 at 3:45 pm