Malware Targeting New Victims Through Google Ads Causes Pain

Date:

Cybersecurity firm Secureworks has unearthed a different strain of malware that appears to be disguising itself as Google Ads, and it’s rapidly spreading among new victims. Dubbed Bumblebee, the malware was first detected over a year ago, but Secureworks has now highlighted how the threat actor is getting creative by tapping into a trending phenomenon.

Secureworks’ 2022 State of the Threat report discovered an upswing in malicious activity involving trojanized software being disseminated via Google Ads or SEO poisoning, and Bumblebee is just one of several examples of this kind of attack in the wild.

Not only does the malware exist on Google search engines, but there are also multiple examples of it present in popular business applications, such as Zoom, Cisco AnyConnect, ChatGPT, and Citrix Workspace. When users are misguided into thinking a download is genuine and install it onto their systems, this is when the malware takes hold and gives the threat actor backdoor access and the ability to deploy additional tools, such as Cobalt Strike.

Mike McLellan, the Director of Intelligence at Secureworks, suggested that as many as 1% of online ads contain malicious elements. Similarly, he gave an example of how a victim may become entrapped in the attack: a situation whereby a user attempts to download legitimate software but is instead subject to a malicious remote attack.

This development is a clear indication of just how critical it is that companies conform to stringent policies that prevent the opening of web ads and the granting of privileges to software downloads. Both users and companies should take caution, as the safest practice to take is to request that a company’s IT team is involved in download processes, or for the user to create their own trail to access the genuine website, away from any obvious links or ads.

See also  How AI Is Transforming Role-Playing Games

Frequently Asked Questions (FAQs) Related to the Above News

Please note that the FAQs provided on this page are based on the news article published. While we strive to provide accurate and up-to-date information, it is always recommended to consult relevant authorities or professionals before making any decisions or taking action based on the FAQs or the news article.

Share post:

Subscribe

Popular

More like this
Related

Global Data Center Market Projected to Reach $430 Billion by 2028

Global data center market to hit $430 billion by 2028, driven by surging demand for data solutions and tech innovations.

Legal Showdown: OpenAI and GitHub Escape Claims in AI Code Debate

OpenAI and GitHub avoid copyright claims in AI code debate, showcasing the importance of compliance in tech innovation.

Cloudflare Introduces Anti-Crawler Tool to Safeguard Websites from AI Bots

Protect your website from AI bots with Cloudflare's new anti-crawler tool. Safeguard your content and prevent revenue loss.

Paytm Founder Praises Indian Government’s Support for Startup Growth

Paytm founder praises Indian government for fostering startup growth under PM Modi's leadership. Learn how initiatives are driving innovation.