logo

Decoding HTML Style Tag Based Malicious Iframes

ID: ed9e3308-d6e8-53a9-b274-7d0d76fb4af7

STIX ID: report--ed9e3308-d6e8-53a9-b274-7d0d76fb4af7

Feed Name: Zscaler Security Research Blog

Threat Score
55/100

Date Published: 2025-04-02

Date Updated: 2026-05-01

...
...

This report describes an investigation into a malicious iframe injection technique where attackers embedded obfuscated JavaScript across a style tag and script to reconstruct and eval an iframe that loads malware from a remote domain; the author demonstrates step-by-step decoding and a test page to reveal the hidden iframe.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.