Security News

Malvertising on steroids serves Lumma infostealer
2024-12-17 12:24

A large-scale malvertising campaign distributing the Lumma infostealer malware via intrusive “ads” leading to fake CAPTCHA pages has been tied by researchers to a threat actor abusing the Monetag...

Malvertising Campaign Hijacks Facebook Accounts to Spread SYS01stealer Malware
2024-10-30 13:00

Cybersecurity researchers have uncovered an ongoing malvertising campaign that abuses Meta's advertising platform and hijacked Facebook accounts to distribute information known as SYS01stealer....

Everything You Need to Know about the Malvertising Cybersecurity Threat
2024-10-29 16:00

Malvertising is a shortened mash-up of “malicious advertising.” In a nutshell, malvertising is a relatively new cyberattack method in which bad actors inject malicious code into digital ads. These...

Arc browser’s Windows launch targeted by Google ads malvertising
2024-05-25 15:17

A new Google Ads malvertising campaign, coinciding with the launch of the Arc web browser for Windows, was tricking people into downloading trojanized installers that infect them with malware payloads. The Arc browser is a new web browser featuring an innovative user interface design that sets it apart from traditional browsers.

Ransomware gang targets Windows admins via PuTTy, WinSCP malvertising
2024-05-18 18:23

A ransomware operation targets Windows system administrators by taking out Google ads to promote fake download sites for Putty and WinSCP. WinSCP and Putty are popular Windows utilities, with WinSCP being an SFTP client and FTP client and Putty an SSH client. System administrators commonly have higher privileges on a Windows network, making them valuable targets for threat actors who want to quickly spread through a network, steal data, and gain access to a network's domain controller to deploy ransomware.

New Malvertising Campaign Distributing PikaBot Disguised as Popular Software
2023-12-19 11:02

The malware loader known as PikaBot is being distributed as part of a malvertising campaign targeting users searching for legitimate software like AnyDesk. "PikaBot was previously only distributed...

Microsoft Warns of Malvertising Scheme Spreading CACTUS Ransomware
2023-12-04 04:20

Microsoft has warned of a new wave of CACTUS ransomware attacks that leverage malvertising lures to deploy DanaBot as an initial access vector. The DanaBot infections led to "hands-on-keyboard...

BlackCat plays with malvertising traps to lure corporate victims
2023-11-16 14:45

Affiliates of the ALPHV/BlackCat ransomware-as-a-service operation are turning to malvertising campaigns to establish an initial foothold in their victims' systems. The Nitrogen malware campaign was first observed in June, but the tactic of malvertising associated with Nitrogen is new.

New Malvertising Campaign Uses Fake Windows News Portal to Distribute Malicious Installers
2023-11-09 13:26

A new malvertising campaign has been found to employ fake sites that masquerade as legitimate Windows news portal to propagate a malicious installer for a popular system profiling tool called CPU-Z. "This incident is a part of a larger malvertising campaign that targets other utilities like Notepad++, Citrix, and VNC Viewer as seen in its infrastructure and cloaking templates used to avoid detection," Malwarebytes' Jérôme Segura said. While malvertising campaigns are known to set up replica sites advertising widely-used software, the latest activity marks a deviation in that the website mimics WindowsReport[.

Malvertising Campaign Targets Brazil's PIX Payment System with GoPIX Malware
2023-10-25 09:13

The popularity of Brazil's PIX instant payment system has made it a lucrative target for threat actors looking to generate illicit profits using a new malware called GoPIX. Kaspersky, which has...