Saturday, September 21, 2024

NEW and EFFECTIVE malware attack via fake CAPTCHAs

 CAPTCHs ae those popups: I am a Human or I am not a robot.
Attackers are now deploying fake CAPTCHAs to get victims to click.
We have done it before, many times. Kinda automatic now. We just want that game at a reduced price or an app we can't afford through vendor's stores.

This CAPTCHA copies a script, tricks the victim into copying then pasting this malicious script into a PowerShell window and executing that script.


The success of this malware campaign shows some have relaxed their awareness.

The result of a successful execution of this malware load: 
An infostealer to copy your passwords, password manager vault, cryptocurrency wallets.

No comments:

Post a Comment