Skip to content
Silicon Shecky

Silicon Shecky

Infosec Practitioner

  • Security is Reactionary, No Matter What Security
  • New Year, New Post, from the start General
  • First Defcon – The results Reviews
  • Defender, KQL and Lockbit Microsoft
  • Do well, not be “popular” Ramblings
  • Defense Layers: A Case Study Microsoft
  • Device vs. User Microsoft
  • Ransomware, Are You Ready? General

Google Poisoning gives Malicious Search Results

Posted on May 19, 2009May 19, 2009 By Michael Kavka No Comments on Google Poisoning gives Malicious Search Results

Google, we have a problem. It seems you can’t go to a single tech site right now without hearing about the “Google Poisoning Attack” and how it works. For an attack that has been around since March, its amazing that it is now starting to pick up mainstream attention.

To put it in simple terms, legitimate websites are unknowingly causing the problem due to flaws in Adobe software. Adobe, yep, Flash, Acrobat, other items, doesn’t matter. It seems that there is some flaw involved with it all. I do know that there have been a few Zero-Day Adobe exploits that have recently been patched by Adobe, heck my own machine got updated today. Will it help me out, I don’t know.

The scary thing about it all is that although this poisoning has been around since march, the amount of affected sites has almost quadrupled in one weeks time from about 800 to about 3000 according to ScanSafe. CERT has raised a red flag because of this huge increase, and it does not look like it is slowing down.

The real question about all of this is again, patching. When was a fix for the vulnerability released, and how long does it take companies to patch?

I’d post more information about what happens to your machine such as FTP usage, stolen passwords, etc, but honestly, so much is out there on it that you just need to go to any site such as eWeek’s site to get more info on the attack itself. Just be careful and make sure your machines are as updated as they can be.

Computers, Internet/Music, Security Tags:Adobe Flaw, Google Poisoning, Google Vulnerability, Security Patches, Website Hijacking

Post navigation

Previous Post: IIS 6.0 Flaw is serious
Next Post: Shecky Tweets for 2009-05-19

Related Posts

  • Security is Reactionary, No Matter What Security
  • Defender, KQL and Lockbit Microsoft
  • Defense Layers: A Case Study Microsoft
  • Device vs. User Microsoft
  • Ransomware, Are You Ready? General
  • Are you sure it is the execs? Ramblings

More Related Articles

Security is Reactionary, No Matter What Security
Defender, KQL and Lockbit Microsoft
Defense Layers: A Case Study Microsoft
Device vs. User Microsoft
Ransomware, Are You Ready? General
Are you sure it is the execs? Ramblings

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

  • About
  • Links
    • Burbsec
    • BSides312
    • Infosec Exchange Mastodon
    • BSidesRoc
    • Hacks4Pancakes Blog
    • Krebs On Security
    • Bleeping Computer
  • Categories
    • General
    • Computers
    • Software
    • Rants
    • Security
    • Internet/Music
    • Reviews
    • Microsoft
    • Hardware
    • Mobile Computing
  • Archives
  • Social Media

Browse by tags

2008 Active Directory Android Antivirus Apple Beta CarbonBlack Chrome Computers Exchange Exchange 2007 Firefox General Thoughts Google InfoSec Internet Explorer iOS iPad IT Linux Mac Malware Microsoft OS OSx Patches SBS SBS 2008 Security Server SMB Software Support Surface TechEd Thotcon Tweets Ubuntu Verizon Virus Vista Windows Windows 7 Windows 8 XP
  • About
  • Links
    • Burbsec
    • BSides312
    • Infosec Exchange Mastodon
    • BSidesRoc
    • Hacks4Pancakes Blog
    • Krebs On Security
    • Bleeping Computer
  • Categories
    • General
    • Computers
    • Software
    • Rants
    • Security
    • Internet/Music
    • Reviews
    • Microsoft
    • Hardware
    • Mobile Computing
  • Archives
  • Social Media

Connect

  • Bluesky
  • LinkedIn
  • Mastodon
  • RSS
  • Twitter

RSS feed: iFin Intel Feed iFin Intel Feed

  • Is This A Joke? In The Auth Header? (F5 BIG-IP UnAuth Heap-Overflow to RCE CVE-2026-94127) September 23, 2026 Sina Kheirkhah (@SinSinology)
  • Placeholder domain used in dev docs now serves ClickFix attacks September 23, 2026 Lawrence Abrams
  • Malicious Firefox Extension Poses as PDF Identity Verifier to Hijack Google Accounts September 23, 2026 Karlo Zanki
  • New RemControl Android banking malware targets users in Europe and Canada September 23, 2026 Bill Toulas
  • FBI investigates hacking claim amid hiring portal outage September 23, 2026 DysruptionHub Staff
  • UK regulator to investigate Pornhub parent company for alleged age verification failings September 23, 2026
  • Check Point warns of hackers exploiting Security Gateway VPN RCE flaw September 23, 2026 Bill Toulas
  • Watchdog finds most agencies failed to meet CISA cloud security orders, heightening risk of attack September 23, 2026 Tim Starks
  • No evidence of successful foreign meddling in 2024 election, spy agencies found September 23, 2026
  • CVE-2024-0244 – A heap buffer overflow in the Canon MF753Cdw printer September 23, 2026 Connor Ford
  • Hackers start exploiting critical WordPress flaw for code execution September 23, 2026 Bill Toulas
  • Spokane Public Schools in Washington takes systems offline after security incident September 23, 2026 DysruptionHub Staff

Browse by tags

2008 Active Directory Android Antivirus Apple Beta CarbonBlack Chrome Computers Exchange Exchange 2007 Firefox General Thoughts Google InfoSec Internet Explorer iOS iPad IT Linux Mac Malware Microsoft OS OSx Patches SBS SBS 2008 Security Server SMB Software Support Surface TechEd Thotcon Tweets Ubuntu Verizon Virus Vista Windows Windows 7 Windows 8 XP

RSS feed: iFin Intel Feed iFin Intel Feed

  • Is This A Joke? In The Auth Header? (F5 BIG-IP UnAuth Heap-Overflow to RCE CVE-2026-94127) September 23, 2026 Sina Kheirkhah (@SinSinology)
  • Placeholder domain used in dev docs now serves ClickFix attacks September 23, 2026 Lawrence Abrams
  • Malicious Firefox Extension Poses as PDF Identity Verifier to Hijack Google Accounts September 23, 2026 Karlo Zanki
  • New RemControl Android banking malware targets users in Europe and Canada September 23, 2026 Bill Toulas
  • FBI investigates hacking claim amid hiring portal outage September 23, 2026 DysruptionHub Staff
  • UK regulator to investigate Pornhub parent company for alleged age verification failings September 23, 2026
  • Check Point warns of hackers exploiting Security Gateway VPN RCE flaw September 23, 2026 Bill Toulas
  • Watchdog finds most agencies failed to meet CISA cloud security orders, heightening risk of attack September 23, 2026 Tim Starks
  • No evidence of successful foreign meddling in 2024 election, spy agencies found September 23, 2026
  • CVE-2024-0244 – A heap buffer overflow in the Canon MF753Cdw printer September 23, 2026 Connor Ford
  • Hackers start exploiting critical WordPress flaw for code execution September 23, 2026 Bill Toulas
  • Spokane Public Schools in Washington takes systems offline after security incident September 23, 2026 DysruptionHub Staff
  • Security is Reactionary, No Matter What Security
  • New Year, New Post, from the start General
  • First Defcon – The results Reviews
  • Defender, KQL and Lockbit Microsoft
  • Do well, not be “popular” Ramblings
  • Defense Layers: A Case Study Microsoft
  • Device vs. User Microsoft
  • Ransomware, Are You Ready? General

Social Media

  • Bluesky
  • Mastodon
  • Twitter

Copyright © 2026 Silicon Shecky.