Malwarebytes discovered a malvertising campaign taking place on adult site xHamster. The attack chain starts a malicious advertisement using a shortened Google URL that redirect victims to the a domain serving the popular Angler Exploit Kit. Bedep is generating traffic only visible via network traffic tools like Fiddler or Wireshark (no browser is open or visible to the end user). Despite that there is no visible GUI, Bedep loads malicious URLs that trigger the [exploit kit] exploitation. There is no official news regarding the number of visitors of xHamsters affected by the malversting campaign.”]
Source: https://securityaffairs.co/wordpress/36367/cyber-crime/malvertising-campaign-xhamster.html

