Risk
11/19/2008
07:33 PM
Dark Reading
Dark Reading
Products and Releases
50%
50%

LegitScript Shuts Down 500 No-Prescription-Required Online Pharmacies

Web sites fueling prescription drug abuse, selling non-FDA approved drugs taken offline

ARLINGTON, Va., Nov. 18 /PRNewswire/ -- LegitScript, an online pharmacy certification program, announced today that it has succeeded in getting nearly 500 "rogue" Internet pharmacy websites shut down.

The sites had been selling prescription drugs or steroids without requiring a prescription, a practice that is illegal and considered unsafe by medical authorities. In most cases, the drugs were sold from outside of the United States.

"The Internet is a safer place today because these illicit prescription drug websites have been terminated," said John Horton, LegitScript's President.

Among the domain name registrars to take the lead in shuttering the rogue Internet pharmacies was Directi. Horton praised the domain name registrars that terminated the rogue Internet pharmacies. "Directi, in particular, has been a leader in fighting rogue Internet pharmacies, and has steadily demonstrated its commitment to Internet safety by refusing to sponsor websites engaged in spam, malware, the illicit sale of prescription or other drugs, or similar activities."

The takedown also won praise from Internet safety proponents and prescription drug abuse experts. Susan Foster, Vice President at The National Center on Addiction and Substance Abuse at Columbia University (CASA), said, "CASA congratulates LegitScript for its successful shut down of hundreds of illegal Internet prescription drug trafficking sites. This work, done in cooperation with website registrars like Directi, provides a model that all website registrars should immediately adopt."

The websites were members of "online pharmacy affiliate programs" that allow people without any training as a pharmacist to operate their own online pharmacy and share in profits from the sale of prescription drugs without a valid prescription.

"Our family applauds the termination of these rogue online pharmacies," said Dan Pearson, whose son, Justin Pearson, overdosed and died after ordering drugs from a rogue Internet pharmacy. "Directi and other registrars that are taking a stand against these illicit Internet pharmacy affiliate networks are helping prevent future tragedies."

LegitScript is the largest online pharmacy verification service in the United States and has approved 185 online pharmacies as having met its baseline standards for legitimacy and safety. LegitScript does not accept payment or funding from the online pharmacies it reviews and approves.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading Tech Digest, Dec. 19, 2014
Software-defined networking can be a net plus for security. The key: Work with the network team to implement gradually, test as you go, and take the opportunity to overhaul your security strategy.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2015-0236
Published: 2015-01-29
libvirt before 1.2.12 allow remote authenticated users to obtain the VNC password by using the VIR_DOMAIN_XML_SECURE flag with a crafted (1) snapshot to the virDomainSnapshotGetXMLDesc interface or (2) image to the virDomainSaveImageGetXMLDesc interface.

CVE-2015-1422
Published: 2015-01-29
Multiple cross-site scripting (XSS) vulnerabilities in Gecko CMS 2.2 and 2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) horder[], (2) jak_catid, (3) jak_content, (4) jak_css, (5) jak_delete_log[], (6) jak_email, (7) jak_extfile, (8) jak_file, (9) jak_hookshow[], (10) j...

CVE-2015-1423
Published: 2015-01-29
Multiple SQL injection vulnerabilities in Gecko CMS 2.2 and 2.3 allow remote administrators to execute arbitrary SQL commands via the (1) jak_delete_log[] or (2) ssp parameter to admin/index.php.

CVE-2015-1424
Published: 2015-01-29
Cross-site request forgery (CSRF) vulnerability in Gecko CMS 2.2 and 2.3 allows remote attackers to hijack the authentication of administrators for requests that add an administrator user via a newuser request to admin/index.php.

CVE-2014-8893
Published: 2015-01-28
Multiple cross-site scripting (XSS) vulnerabilities in (1) mainpage.jsp and (2) GetImageServlet.img in IBM TRIRIGA Application Platform 3.2.1.x, 3.3.2 before 3.3.2.3, and 3.4.1 before 3.4.1.1 allow remote authenticated users to inject arbitrary web script or HTML via a crafted URL.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
If youíre a security professional, youíve probably been asked many questions about the December attack on Sony. On Jan. 21 at 1pm eastern, you can join a special, one-hour Dark Reading Radio discussion devoted to the Sony hack and the issues that may arise from it.