Cyber criminals are using fake advertising to spread malware
By MYBRANDBOOK
According to Cisco's Talos threat intelligence organization, a new malicious campaign has been gaining traction as an effective method to harvest information from unknowing users. Known as malvertising, Cisco's Talos Intelligence believes a specific campaign known as "Magnat" uses fraudulent online advertising to trick users that are searching for legitimate software installers. The Cisco threat intelligence team believes the Magnat campaign may have started in late 2018 and targets users in Canada, the United States, Australia, and several other European nations.
Once a user is directed to the fraudulent download, they run a fake installer that deploys three distinct pieces of malware to their system. While the fake installer gets to work installing multiple malware components, it does not install the actual application the user was originally searching for.
The first piece of malware is a password stealer used to collect user credentials, often via a common tool known as Redline. Another malware, MagnatBackdoor sets up remote access to the user's device via Microsoft Remote Desktop. This access, combined with the user credentials stolen by Redline (or a similar tool), can provide unfettered access to the user's systems despite being secured and firewalled. The final piece of the malware trifecta is a Chrome browser extension known as MagnatExtension, which is used for keylogging, obtaining screenshots of sensitive information, etc.
Talos believes the Magnat tools have been developed and improved over the course of several years and show no signs of slowing down anytime soon. The installer package's name is constantly evolving and typically references the name of popular applications to lend credibility and trick users into deploying the package. Examples of past package names include viber-25164.exe, wechat-35355.exe, build_9.716-6032.exe, setup_164335.exe, nox_setup_55606.exe and battlefieldsetup_76522.exe.
Nazara and ONDC set to transform in-game monetization with ‘
Nazara Technologies has teamed up with the Open Network for Digital Comme...
Jio Platforms and NICSI to offer cloud services to government
In a collaborative initiative, the National Informatics Centre Services In...
BSNL awards ₹5,000 Cr Project to RVNL-Led Consortium
A syndicate led by Rail Vikas Nigam Limited (abbreviated as RVNL), along wi...
Pinterest tracks users without consent, alleges complaint
A recent complaint alleges that Pinterest, the popular image-sharing platf...
ALPHAMAX TECHNOLOGIES PVT. LTD.
TP-LINK INDIA PVT. LTD.
LENOVO INDIA PVT. LTD.
AMARA RAJA POWER SYSTEMS LTD.
Icons Of India : NATARAJAN CHANDRASEKARAN
Natarajan Chandrasekaran (Chandra) is the Chairman of Tata Sons, the h...
ICONS OF INDIA : RAJESH NAMBIAR
Rajesh leads the company’s India associates and enhances relationshi...
Icons Of India : ASHISH KUMAR CHAUHAN
Ashish kumar Chauhan, an Indian business executive and administrator, ...
STPI - Software Technology Parks of India
STPI promotes and facilitates the growth of the IT and ITES industry i...
EESL - Energy Efficiency Services Limited
EESL is uniquely positioned in India’s energy sector to address ener...
ITI - ITI Limited
ITI Limited is a leading provider of telecommunications equipment, sol...
Indian Tech Talent Excelling The Tech World - Sundar Pichai, CEO- Alphabet Inc.
Sundar Pichai, the CEO of Google and its parent company Alphabet Inc.,...
Indian Tech Talent Excelling The Tech World - Soni Jiandani, Co-Founder- Pensando Systems
Soni Jiandani, Co-Founder of Pensando Systems, is a tech visionary ren...
Indian Tech Talent Excelling The Tech World - Vinod Dham, Founder & Executive Managing Partner, IndoUS Venture Partners
Vinod Dham, known as the “Father of the Pentium Chip,” has left an...