Angler Exploit Campaign Infected at least 19 Sites

Cyphort Labs spotted a new Angler Exploit campaign that has already infected at least 19 websites.

The campaign uses the bootstrapcdn.org redirector to send users to malicious payloads hosted on .co.uk websites, according to a May 17 blog post.

Cyphort Senior Director Threat Operations Nick Bilogorskiy said in the post the campaign started on May 9 and primarily infected web-based forums but has also infected the website of a credit union in Texas and the site of remote desktop program.