Security News > 2023 > May > Searching for AI Tools? Watch Out for Rogue Sites Distributing RedLine Malware

Malicious Google Search ads for generative AI services like OpenAI ChatGPT and Midjourney are being used to direct users to sketchy websites as part of a BATLOADER campaign designed to deliver RedLine Stealer malware.
BATLOADER is a loader malware that's propagated via drive-by downloads where users searching for certain keywords on search engines are displayed bogus ads that, when clicked, redirect them to rogue landing pages hosting malware.
The installer file, per eSentire, is rigged with an executable file and a PowerShell script that downloads and loads RedLine Stealer from a remote server.
The adversary's use of ChatGPT and Midjourney-themed lures to serve malicious ads and ultimately drop the RedLine Stealer malware was also highlighted last week by Trend Micro.
This is not the first time the operators behind BATLOADER have capitalized on the AI craze to distribute malware.
The cybersecurity company further pointed out the abuse of Google Search ads has fallen off from their early 2023 peak, suggesting that the tech giant is taking active steps to curtail its exploitation.
News URL
https://thehackernews.com/2023/05/searching-for-ai-tools-watch-out-for.html
Related news
- Fake AI Tools Used to Spread Noodlophile Malware, Targeting 62,000+ via Facebook Lures (source)
- How AI, corruption and digital tools fuel Europe’s criminal underworld (source)
- ⚡ THN Weekly Recap: GitHub Supply Chain Attack, AI Malware, BYOVD Tactics, and More (source)
- Fake Microsoft Office add-in tools push malware via SourceForge (source)
- Widely available AI tools signal new era of malicious bot activity (source)
- StealC malware enhanced with stealth upgrades and data theft tools (source)
- Fake AI platforms deliver malware diguised as video content (source)
- Fake AI video generators drop new Noodlophile infostealer malware (source)
- ⚡ Weekly Recap: Zero-Day Exploits, Developer Malware, IoT Botnets, and AI-Powered Scams (source)
- AI vs AI: How cybersecurity pros can use criminals’ tools against them (source)