JPEG Exploit Targeting Porn Newsgroups

CYBERSPACE — The first attacks using the Windows JPEG flaw have shown up on adult-oriented newsgroups, according to warnings issued by Internet security organizations today.

Usenet-related site EasyNews published a notice today that pornographic images containing hidden code were posted to at least 10 of the alt.binaries newsgroups, including alt.binaries.erotica.breasts and alt.binaries.erotica.beanie-babies.

The images first started to be posted at around 7 p.m. on Sunday, according to Godzilla, an administrator at EasyNews.

The corrupted images, which look exactly the same as a normal image, exploits the recently-announced JPEG flaw in Windows’ Graphic Device Interface Plus (GDI+) with a buffer overflow attack.

“Once this JPEG overflowed GDI+, it phoned home, connected to an FTP site and downloaded almost 2 megs of stuff,” stated Godzilla.

After downloading the files, the malicious code sets the infected computer up as a server and installs an IRC client.

According to Godzilla, 93 users were logged into the FTP site when he checked it last.

The release of the infected images came less than a week after sample code appeared on the Internet that explained how to exploit the GDI+ JPEG flaw.

According to the F-Secure Antivirus Research Team, the corrupted images don’t seem to be attempting to spread themselves.

“These JPEGs did not replicate, so this is not a virus,” the team wrote in their weblog. “Apparently, they tried to use these JPEGs to download Trojans to vulnerable computers… but the download sites should be down by now.”

Even though the threat posed by the these specific postings may have passed, F-Secure is concerned that it might signal a large problem on the way.

“Things are heating up,” wrote Mikko, a member of F-Secure’s antivirus team. “I have a nasty feeling we might sooner or later see a massmailer worm using a JPEG image as the attachment.”

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

'SheHerGirls' Launches Through Paysite.com

The braintrust behind PoleVixens has officially launched a new membership site, SheHerGirls, also through Paysite.com.

FTC Invites Public Comment on 'Click to Cancel' Rulemaking

The Federal Trade Commission (FTC) announced this week that it is seeking public comment on whether it should amend its Negative Option Rule to better address deceptive or unfair practices.

'PSMTickling' Launches Through Paysite.com

PSMTickling.com has officially launched through Paysite.com.

JuicyAds Marks 20-Year Anniversary

JuicyAds is celebrating its 20th anniversary.

AEBN Publishes Popular Searches for January, February

AEBN has published the top search terms for January and February from its straight and gay theaters in all 50 states and the District of Columbia.

2026 TEAs Shine Bright in Celebration and Solidarity

The industry’s trans adult performers, creators and creatives came together Sunday night at the historic Avalon nightclub in Hollywood for an evening of well-deserved celebration: the 2026 Trans Erotica Awards.

Kansas Plaintiff Drops Chaturbate AV Suit, Revamps SuperPorn Complaint

The plaintiff in a lawsuit alleging that cam platform Chaturbate violated Kansas’ age verification law has voluntarily dismissed that action, while retooling a similar complaint against adult site SuperPorn.

New Creator Networking Platform 'CollabGPS' Launches

CollabGPS, a new creator networking platform designed to facilitate safe collaboration, has officially launched.

Chaturbate Launches Yearlong 15th Anniversary Campaign

Chaturbate has launched a yearlong campaign to celebrate its 15th anniversary, titled “CB15.”

Show More