Hackers hijack a half-million sites in latest attack
This time around the attack seems to target phpBB powered sites, although the exact method of infection is unknown at this time.
Quote:
over half a million legitimate Web sites have been hacked by today's mass-scale attack, only the latest in a string that goes back to at least January. All of the sites, he confirmed, are running "phpBB," an open-source message forum manager.
The infected sites carry a cocktail of exploits targeting vulnerabilities in IE and Real Player. Not zero-day exploits, though, so keep your software updated.
The attackers also do not link directly to the "mother" infection server; rather it sends a visitors' browser on a long redirection journey which ultimately ends at an infected server. Presumable this enables the attackers to quickly switch to another infection server as soon as admins/authorities shuts down an infected server.