Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search
 

Madam45for2923

(7,178 posts)
Fri Oct 13, 2017, 04:02 PM Oct 2017

Hackers have turned Politifacts website into a trap for your PC

Source: Washington Post

PolitiFact has been an invaluable resource for debunking politicians' misstatements and falsehoods. But now, it seems, some unknown actor is trying to profit off the website's popularity — by hooking visitors' computers into a virtual currency mining operation.

The hack was discovered Friday by security researcher Troy Mursch, who noticed that visiting Politifact.com caused his computer's CPU to run at its maximum capacity.

The anomaly left telltale signs of Coin Hive — a piece of code that can be installed on websites that, when active, diverts unused computational power on visitors' computers toward generating a Bitcoin-like currency called Monero. Under ordinary circumstances, said Mursch, Coin Hive is used by some websites as an alternative to advertising. But in the case of PolitiFact, somebody has programmed the site to run multiple versions of Coin Hive simultaneously, basically bringing any visitor's computer to a processing halt.

The phenomenon was soon confirmed by security journalist Brian Krebs.








Read more: https://www.washingtonpost.com/news/the-switch/wp/2017/10/13/hackers-have-turned-politifacts-website-into-a-trap-for-your-pc/?utm_term=.9de64c6009e6&tid=sm_tw
9 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Hackers have turned Politifacts website into a trap for your PC (Original Post) Madam45for2923 Oct 2017 OP
more russian cyber warfare elmac Oct 2017 #1
I HOPE DU is ready for this...sounds very nasty yuiyoshida Oct 2017 #2
Thanx for the warning. nt marybourg Oct 2017 #3
This is why I use an extension in my browser that will not run any sites javascript unless cstanleytech Oct 2017 #4
What extension do you use? Madam45for2923 Oct 2017 #5
Its called scriptsafe and its for chrome. cstanleytech Oct 2017 #6
NoScript is equivalent for Firefox HAB911 Oct 2017 #9
I did visit PolitiFact and noticed a terrible slowdown. Now I seek advice. Jim Lane Oct 2017 #7
Opera? I gave up on them when they were sold and switched to chrome but anyway back on topic cstanleytech Oct 2017 #8

cstanleytech

(26,284 posts)
4. This is why I use an extension in my browser that will not run any sites javascript unless
Fri Oct 13, 2017, 05:16 PM
Oct 2017

I specifically grant that site authorization either temporarily or permanent but either way I control it and if it opens up another site with a popup I am protected as it only authorizes the site I was on before.
The other bonus is has cut down on the number of annoying javascript popups I have to deal with

 

Jim Lane

(11,175 posts)
7. I did visit PolitiFact and noticed a terrible slowdown. Now I seek advice.
Fri Oct 13, 2017, 11:54 PM
Oct 2017

I was using Opera for the first time in a long time, so I assumed it was a problem with that browser. This article makes me think it was probably these CoinHive hackers.

Does the malware operate only while you're logged in to an affected site, or is there a chance it left some code on my computer that i should (somehow) find and remove?

cstanleytech

(26,284 posts)
8. Opera? I gave up on them when they were sold and switched to chrome but anyway back on topic
Sat Oct 14, 2017, 12:58 AM
Oct 2017

I would just reboot the computer and assuming the site did not install anything in the background it should work ok.

Latest Discussions»Latest Breaking News»Hackers have turned Polit...