Security Experts Warn Against Fraudulent 'Java Update' Popup on Adult Sites

Security Experts Warn Against Fraudulent 'Java Update' Popup on Adult Sites

LOS ANGELES — Two months after warning of a surge in malvertising fraud targeting adult websites, internet security experts have determined that the bad actors behind it have switched tactics from “exploit kit delivery” to “social engineering” via a fake Java update screen.

As XBIZ reported back in September, the criminal modality of “malvertising,” where bad actors sneak malicious code into supposedly legitimate banner ads, made a comeback this year as people spend more time online — and on adult sites.

Security firm Malwarebytes explained the initial stage of this campaign — which they dubbed “Malsmoke” — as “ads [that] redirect visitors to sites that serve malicious code.”

“When viewed with Internet Explorer or Adobe Flash, the code can exploit critical vulnerabilities in unpatched versions of Internet Explorer,” Malwarebytes initially warned.

Today, Malwarebytes announced that “starting mid-October, the threat actors behind ‘Malsmoke’ appear to have phased out the exploit kit delivery chains in favor of a social engineering scheme instead. The new campaign is tricking visitors to adult websites with a fake Java update.”

This change is significant, according to the security firm, because “it drastically increases the target audience, no longer limiting it to Internet Explorer users running outdated software.”

One of the largest adult sites targeted by the malvertising hackers, according to Malwarebytes, is xHamster.

To read an elaborate explanation of this latest modality in online fraud, visit Malwarebytes.

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

MojoHost Releases Statement on the Future of Adult

In the wake of Tuesday's election and amid concerns about the possible ramifications for the adult industry, MojoHost President Brad Mitchell has releases a statement addressing Project 2025 and the future of the industy.

Adult Web Hosting Service 'Midnight-Host' Launches

Midnight-Host, a new web hosting service designed specifically for adult websites, has launched.

ASN Lifestyle Magazine Joins Pineapple Support as Media Sponsor

ASN Lifestyle Magazine has joined the ranks of over 60 adult businesses and organizations committing funds and resources to Pineapple Support, partnering with the organization as a media sponsor.

Adult Industry Reacts to Trump Victory

On Tuesday, former President Donald Trump was reelected, defeating Vice President Kamala Harris to reclaim the office he lost four years ago.

Fetisfy Online Fetish Marketplace Launches

Fetisfy.com, an online marketplace for users to sell fetish items, has launched.

Pineapple Support Launches 'Spill the Tea, Colombia' Community Support Event Series

Pineapple Support has launched "Spill the Tea, Colombia," a monthly, in-person community support event for adult industry professionals.

Streamster Launches 'Tip2Peep' Camera-Switching Feature

Live-streaming software provider Streamster has launched Tip2Peep, a new feature that allows viewers to switch between multiple webcam viewing angles by tipping the creator.

Tyler Wu Guests on Chaturbate's 'Sex Tales' Podcast

Tyler Wu is the latest guest on Chaturbate’s “Sex Tales” podcast, hosted by Melissa Stratton and Vanniall on the company’s “Camming Life” YouTube channel.

Fleshy to Launch Interactive Cam Site 'Eromote'

Male pleasure brand Fleshy has announced that it will launch an interactive, bidirectional cam site next month called Eromote.

XBIZ LA Show Introduces New 'Crib Crawl' Feature

XBIZ is pleased to announce that the 2025 edition of its flagship conference, the XBIZ Show, will debut a brand-new feature: Crib Crawl, offering attendees the chance to meet and greet representatives from leading brands and organizations in dedicated suites at the host venue.

Show More