From 8272c19f47ca75feeaaa415c40c7d56f55aee6c1 Mon Sep 17 00:00:00 2001 From: gorhill Date: Thu, 9 Oct 2014 10:12:44 -0700 Subject: [PATCH] Updated Dynamic filtering: Examples of usefulness of blocking 3rd party iframe tags (markdown) --- ...f-usefulness-of-blocking-3rd-party-iframe-tags.md | 12 ++++++++++++ 1 file changed, 12 insertions(+) diff --git a/Dynamic-filtering:-Examples-of-usefulness-of-blocking-3rd-party-iframe-tags.md b/Dynamic-filtering:-Examples-of-usefulness-of-blocking-3rd-party-iframe-tags.md index b3ffe3b..9e929db 100644 --- a/Dynamic-filtering:-Examples-of-usefulness-of-blocking-3rd-party-iframe-tags.md +++ b/Dynamic-filtering:-Examples-of-usefulness-of-blocking-3rd-party-iframe-tags.md @@ -1,3 +1,15 @@


3rd-party <iframe> tags blocked by default for all sites.

### Example 1 + +URL: + +`iframe` are very often used by malware code on compromised web sites. The most recent example of this is [jquery.com](http://blog.jquery.com/2014/09/24/update-on-jquery-com-compromises/). + +The web site was compromised, and users of the site were served tainted web pages, which were causing a user's browser to download exploit kit from some remote servers. This was done 1st through a malicious 3rd-party script, which purpose was to dynamically create and embed a 3rd-party-sourced `