Jump to content

Ebay snuffs malware upload bug


Reefa

Recommended Posts

Hacker Aditya Sood has disclosed two vulnerabilities in eBay that allow hackers to upload files for drive-by-download attacks.

The security bod (@AdityaKSood) told ThreatPost the flaws allow attackers to upload malicious content that appear to be benign.

Once uploaded to eBay, malware can be sent to victims using direct links.

“The eBay server fails to implement secure header checks on the image files being uploaded on the server," Sood who found the flaws with colleague Rohit Bansal told the Kaspersky threat service.

"It basically verifies the image extensions. As a result, it is possible to upload a camouflaged malicious file with image file extension.

“The attacker can upload malicious exe file camouflaged as image files and then use the URL in drive by download attacks."

eBay had failed to check uploaded image file headers meaning attackers can hide malware in the picture files.

“[Or], the attacker can also hide malicious executable in the image file which can be be executed on the end-user system when image file is opened.”

It was unknown if eBay paid out a cash reward under its PayPal bug bounty which appears to be offline at the time of writing.

The web payments giant in December paid US$10,000 for a nasty cross-site request forgery flaw that exposed every account to hijacking if victims clicked a crafted link.

http://www.theregister.co.uk/2015/03/31/ebay_snuffs_malware_upload_bug/
Link to comment
Share on other sites


  • Views 760
  • Created
  • Last Reply

Archived

This topic is now archived and is closed to further replies.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...