RedTube Fixes Malware Security Breach

BURBANK, Calif. — RedTube announced this week via Twitter that it fixed a bug on its adult tube site that redirected users to malicious URLs and exposed them to Trojan horse viruses.

The highly trafficked MindGeek-owned property apparently was hacked via a malicious HTML iframe placed directly in the source code of the site and made invisible to the user.

The source code on RedTube's main page was modified in order to redirect the user to malicious URLs hosting the Angler Exploit Kit, according to security blog MalwareBytes, which first discovered and reported the breach. 

Once redirected, the software kicks in and tries to exploit Adobe's recently patched CVE-2015-0313 bug to run malicious code, MalwareBytes said.

Officials of MindGeek’s RedTube division, in a response to MalwareBytes, said that the attack occurred this past Sunday for a “brief period of time.”

“Our security systems immediately detected the breach, and we took direct action to rectify the situation in order to protect RedTube users,” MindGeek told MalwareBytes.

“RedTube pursues stringent privacy requirements and maintains the highest industry standards of privacy protection to secure not only their assets and properties, but to provide comprehensive protection of their customers’ data when visiting a RedTube-owned site.  

"RedTube is committed to providing their customers with an optimal online experience and the peace of mind when they are accessing a RedTube site.”

According to reports, RedTube is not the only adult tube site to have fallen victim to malware in recent months.

Another site, xHamster, was said to be serving up a Flash file that exploited a flaw via a malicious advertisement.

Related:  

Copyright © 2025 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

AEBN Publishes Popular Searches by Country for August, September

AEBN has released the list of popular searches from its straight and gay theaters by country in August and September.

AV in Focus: A Guide to Unlocking Compliance With Clarity

The age verification era isn’t coming — it’s here. Laws are already on the books in numerous U.S. states, as well as in the U.K., France and beyond.

Canadian Privacy Commissioner Endorses National AV Bill

Philippe Dufresne, privacy commissioner of Canada, has voiced support for a bill that would impose fines of up to $500,000 on adult sites that do not implement age verification for Canadian viewers.

Ricky Johnson Launches 'Ricky's Resort' Through YourPaysitePartner

Ricky's Room studio honcho Ricky Johnson has launched his latest site, RickysResort.com, through YourPaysitePartner (YPP).

Industry Attorney Paul Cambria Retires After 50 Years of Practicing Law

After more than a half-century in practice, during which he provided the defense in some of the adult industry's most notable legal cases, attorney Paul Cambria has retired.

2026 XMA Nominations Party Set for Nov. 19 in Hollywood

The 2026 XMA nominations reveal party will take place at Keys on the Sunset Strip on Wednesday, Nov. 19, with red-carpet arrivals starting at 8 p.m.

New VR Membership Site 'DeepInSex.com' Launches

The new 8K VR membership site DeepInSex has officially launched.

NATS Launches Integrated Content Management System

Too Much Media (TMM) has rolled out an integrated, no-charge Content Management System (CMS) to its NATS platform.

AEBN Reveals Avery Lust as Top Trans Star for Q3 of 2025

AEBN has published its top trans stars list for the third quarter of 2025, with Avery Lust landing atop the leaderboard.

FSC: California's Device-Based AV Law Does Not Apply to Adult

The Free Speech Coalition (FSC) put out an advisory today explaining that California's new device-based age verification law does not apply to adult websites.

Show More