KrebsOnSecurity is reporting that hundreds of thousands of Web sites parked at NetworkSolutions.com have been serving up malicious software thanks to a tainted widget embedded in their pages. The problem has been traced to the “Small Business Success Index” widget, an application that Network Solutions makes available to site owners through its GrowSmartBusiness.com blog. Network Solutions has a history of weak security controls that put visitors to its customers web sites at risk of malware infection. See, e.g., our April 19 blog post.
The report is a reminder to employ defense-in-depth on business and home computer systems, including
- Keep operating system and all applications patched and up-to-date
- Keep anti-malware software up-to-date with current data files
- Consider switching from less-effective anti-malware solutions to more powerful intrusion detection and prevention systems
- Run Firefox instead of Internet Explorer; Run Firefox with the No-Script add-on if you’re technical
While nothing you do will make you 100% secure, there’s a lot you can do to minimize the risk of attack.