NodeStealer Malware Targets Facebook Ad Accounts, Harvesting Credit Card Data

November 21, 2024 at 01:48AM Threat hunters report an updated Python NodeStealer targeting Facebook Ads Manager and web browser credit card data. Developed by Vietnamese actors, it uses advanced techniques for data exfiltration, including avoiding detection in Vietnam. Recent phishing campaigns deploy I2Parcae RAT via ClickFix techniques, endangering users’ security and financial stability. ### Meeting … Read more

Fake Bitwarden ads on Facebook push info-stealing Chrome extension

November 18, 2024 at 12:14PM Fake Bitwarden ads on Facebook promote a malicious Chrome extension that steals user data. This phishing campaign, identified by Bitdefender Labs, uses deceptive tactics to mimic the Chrome Web Store. Users are advised to ignore update prompts and only install extensions from trusted sources to avoid risks. ### Meeting Takeaways: … Read more

Cybercrooks are targeting Bengal cat lovers in Australia for some reason

November 6, 2024 at 04:51PM Sophos reports that the Gootloader malware, known for SEO poisoning tactics, targets niche victims, including Australian Bengal cat enthusiasts. As an infostealer or malware dropper, it exploits search queries to deliver malicious payloads. The use of malvertising is rising, connecting cybercrime to ransomware operations, prompting action from cybersecurity agencies. ### … Read more

Malvertising Campaign Hijacks Facebook Accounts to Spread SYS01stealer Malware

October 30, 2024 at 10:03AM Cybersecurity researchers uncovered a malvertising campaign exploiting Meta’s platform, using hijacked Facebook accounts to spread SYS01stealer malware. The campaign targets users with deceptive ads, stealing login credentials and affecting Facebook business accounts. Additionally, phishing scams on Eventbrite and cryptocurrency job fraud are increasing, leveraging brand recognition for illicit gains. ### … Read more

Global infostealer malware operation targets crypto users, gamers

September 21, 2024 at 12:51PM A cybercriminal group named “Marko Polo” has executed a large-scale infostealer malware campaign, impacting thousands and potentially causing millions in financial losses. Using various distribution channels and targeting high-value individuals, the group distributes malicious software under legitimate guises, compromising both Windows and macOS systems. Mitigating these threats involves cautious online … Read more

US Offering $2.5 Million Reward for Belarusian Malware Distributor

August 28, 2024 at 06:54AM The US Department of State is offering a $2.5 million reward for information leading to the arrest of Volodymyr Kadariya, a Belarusian and Ukrainian national indicted for wire fraud conspiracy and computer fraud conspiracy. Kadariya is alleged to have been involved in distributing the Angler Exploit Kit and other malware … Read more

Cybercriminals Exploit Popular Software Searches to Spread FakeBat Malware

August 19, 2024 at 09:15AM Cybersecurity experts have discovered a surge in malware infections driven by malvertising campaigns distributing a loader called FakeBat. The attacks target users seeking popular business software, utilizing trojanized MSIX installers and executing PowerShell scripts to download secondary payloads. FakeBat is associated with threat actor Eugenfest and is used to distribute … Read more

Belarusian-Ukrainian Hacker Extradited to U.S. for Ransomware and Cybercrime Charges

August 14, 2024 at 08:39AM A coalition of law enforcement agencies led to the arrest and extradition of a Belarussian and Ukrainian dual-national, Maksim Silnikau, associated with Russian-speaking cybercrime groups. Silnikau faces charges related to international computer hacking and wire fraud schemes, including ransomware strains and malvertising techniques. If convicted, he could face more than … Read more

US accuses man of being ‘elite’ ransomware pioneer they’ve hunted for years

August 13, 2024 at 01:38PM US has charged Belarusian-Ukrainian cybercriminal Maksim Silnikau for malvertising and ransomware offenses dating back to 2011. An international investigation led to his arrest in Spain and extradition to the US. Silnikau’s associates face charges too. His alleged crimes include engaging in malvertising and operating ransomware-as-a-service, leading to substantial financial losses. … Read more

New Malware Hits 300,000 Users with Rogue Chrome and Edge Extensions

August 10, 2024 at 11:21AM A widespread malware campaign installs rogue Google Chrome and Microsoft Edge extensions via a trojan distributed through fake websites. The malware, present since 2021, affects over 300,000 users and uses malvertising to trick users into downloading the trojan. The extensions hijack searches, intercept web requests, and execute various commands. From … Read more