Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I was wondering how long this would take.

One of the things I've long known as a programmer for the web is that when you let a third party put content on your web site, you don't have control over what they do.

Whether it's a person entering content and you fail to sanitize it, or pulling in ads from an external network, the end result is that you get something like this eventually.

I don't have a solution, really, because nobody wants to pay for content, so sites have to use ad networks. But I'm surprised this hasn't happened much sooner.



What are you talking about? This is far from the first time malicious software has been delivered through advertising.


Ransomeware on the NFL or NYT website has been done before?


Ransomware specifically, no. But malicious software on major, reputable Web sites? Yes.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: