Tech News

Tech Business News

  • Home
  • Technology
  • Business
  • News
    • Technology News
    • Local Tech News
    • World Tech News
    • General News
    • News Stories
  • Media Releases
    • Tech Media Releases
    • General Media Releases
  • Advertisers
    • Advertiser Content
    • Promoted Content
    • Sponsored Whitepapers
    • Advertising Options
  • Cyber
  • Reports
  • People
  • Science
  • Articles
    • Opinion
    • Digital Marketing
    • Gaming
    • Guest Publishers
  • About
    • Tech Business News
    • News Contributions -Submit
    • Journalist Application
    • Contact Us
Reading: More than 250 newspaper sites across the US access malicious JavaScript in malware supply-chain attack
Share
Font ResizerAa
Tech Business NewsTech Business News
  • Home
  • Technology News
  • Business News
  • News Stories
  • General News
  • World News
  • Media Releases
Search
  • News
    • Technology News
    • Business News
    • Local News
    • News Stories
    • General News
    • World News
    • Global News
  • Media Releases
    • Tech Media Releases
    • General Press
  • Categories
    • Crypto News
    • Cyber
    • Digital Marketing
    • Education
    • Gadgets
    • Technology
    • Guest Publishers
    • IT Security
    • People In Technology
    • Reports
    • Science
    • Software
    • Stock Market
  • Promoted Content
    • Advertisers
    • Promoted
    • Sponsored Whitepapers
  • Contact & About
    • Contact Information
    • About Tech Business News
    • News Contributions & Submissions
Follow US
© 2022 Tech Business News- Australian Technology News. All Rights Reserved.
Tech Business News > Cyber > More than 250 newspaper sites across the US access malicious JavaScript in malware supply-chain attack
Cyber

More than 250 newspaper sites across the US access malicious JavaScript in malware supply-chain attack

Editorial Desk
Last updated: February 5, 2023 11:10 pm
Editorial Desk
Share
SHARE

A threat actor known as TA569 by security experts at Proofpoint have created malicious JavaScript and distributed it to more than 250 regional and national newspaper sites in the US in a malware supply-chain attack

A large number of U.S. news sites have been infected with SocGholish JavaScript malware framework (known as FakeUpdates) due to the compromised infrastructure of an undisclosed media firm.

Security experts at enterprise security firm Proofpoint says 250 U.S. news sites have been infected by the malware.

The threat actor behind the supply-chain attacks (tracked by Proofpoint as TA569) injected malicious code into a benign JavaScript file and then gets loaded by the news outlets’ websites.

In a tweet thread, the Threat Insight unit said the media company that was serving as the host for this malicious code served content to its partners using JavaScript.

The affected media organisations served:

  • Boston
  • New York
  • Chicago
  • Miami
  • Washington DC
  • Cincinnati
  • Palm Beach

VP of threat research and detection at Proofpoint Sherrod DeGrippo, says the media company in affected is a firm that provides video and advertising content to major news outlets.

TA569 historically removed and reinstated these malicious JS [JavaScript] injects on a rotating basis. Therefore the presence of the payload and malicious content can vary from hour to hour and shouldn’t be considered a false positive.” says Proofpoint.

According to the firm Red Canary SocGholish is an initial access threat that leverages drive-by-downloads masquerading as software updates.

In a post about the threat the firm said SocGholish relies on social engineering to gain execution, tricking unsuspecting users into running a malicious JavaScript payload stored within a downloaded ZIP file.

Those who visit compromised websites may be infected with malware payloads disguised as fake browser updates delivered as ZIP archives.

Examples of the devlivered ZIP archives as a result of the malicious JavaScript file are:

  • Chromе.Uрdatе.zip
  • Chrome.Updаte.zip
  • Firefoх.Uрdatе.zip
  • Operа.Updаte.zip
  • Oper.Updаte.zip

SocGholish, recently used to backdoor networks infected with the Raspberry Robin malware was recently used in what Microsoft described as Evil Corp pre-ransomware behavior.

ByEditorial Desk
The TBN team is a well establish group of technology industry professionals with backgrounds in IT Systems, Business Communications and Journalism.
Previous Article Game7 and MetaMask web 3 MetaMask Partners with DAO, Game7, to Develop the World’s First Web3-native Game Launcher
Next Article cash converters partners with Nexion Cash Converters partners with Nexion to upgrade its branch office and improve cybersecurity
Leave a Comment

Leave a Reply Cancel reply

You must be logged in to post a comment.

U.S. news sites malware supply-chain attack

Tech Articles

Gmail AI is reading your emails — here is how to stop it

Your Gmail Account May Be Feeding Google’s AI—Here’s What You Need to Know

Your Gmail account may be contributing to Google’s AI systems…

January 26, 2026

How the World’s Data Centres Are Quietly Burning the Planet

Data centres are burning the planet, with a growing environmental…

March 11, 2026
Chatbots Condemning Children To Antisocial Behaviour?

Are Chatbots Condemning Children To Antisocial Behaviour?

Are Chatbots Condemning Children To Antisocial Behaviour? Not by default…

March 2, 2026

Recent News

Cyber-Attacks in Victoria Expose Critical Vulnerabilities
Cyber

Cyber-Attacks In Victoria Expose Critical Vulnerabilities Across Government and Industry Sectors

6 Min Read
Ticketmaster Hacked - Latest Data Breach. 560 Million Customer details
Cyber

Ticketmaster Data Breach Potentially Exposes 560 Million Hacked Customer Details

4 Min Read
Telstra Ventures Surging threats, slashed budgets - cybersecurity - tech news
Cyber

Telstra Ventures Shines Light On Cybersecurity Challenges

7 Min Read
Telstra releases new government security capabilities
Cyber

Telstra Announce Release Of New Government Security Capabilities

3 Min Read
Tech News

Tech Business News

In 2026, technology news is shaping business outcomes faster than ever—driven by AI adoption, rising cyber risk, cloud modernisation, data regulation, and constant platform change.


Tech News keeps Australian organisations and industry professionals informed with timely reporting and practical coverage across AI, cybersecurity, cloud, enterprise IT, startups, science, people and business, plus major world and local news impacting the tech sector.


Tech Business News publishes news and analysis designed to be clear, relevant, and easy to act on. It supports the industry with technology news reports, whitepaper publishing services, and a range of media, advertising and publishing options 

About

About Us 
Contact Us 
Privacy Policy
Copyright Policy
Terms & Conditions

April, 22, 2026

Contact

Tech Business News
Melbourne, Australia
Werribee 3030
Phone: +61 431401041

Hours : Monday to Friday, 9am 530-pm.

Tech News

© Copyright Tech Business News 

Latest Australian Tech News – 2026

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?