A web server, which was connected to the KEK DMZ network, had been compromised and abused as a phishing site. A security hole in the conference information server software was utilized to disguise the web server as banking sites between 4 am October 14 to 10 pm October 16. We noticed several occurence of phishing during this period, and we are now contacting several related organizations.
The server had been shutdown as we noticed the incident, and continuing the investigation further.
|