21 Feb Hackers impersonate top VPN to steal cryptocurrency
[ad_1]
Researchers at Kaspersky have discovered a new malicious campaign which uses a fake version of a popular VPN service’s website to spread the Trojan stealer AZORult by tricking users into thinking they are downloading a Windows installer.
AZORult is one of the most common stealers on Russian hacking forums because of its wide range of capabilities. This Trojan poses a serious threat to infected computers as it allows an attacker to collect a wealth of data including browser history, login credentials, cookies, files and folders, cryptowallet files and it can even be used as a loader to download other malware.
As more users have turned to VPNs to protect their privacy online, cybercriminals have begun to abuse the growing popularity of VPNs by impersonating them, as is the case in this AZORult campaign.
In the campaign discovered by Kaspersky researchers, the attackers created a copy of ProtonVPN’s website which looks identical to the service’s actual site except for the fact that it…
[ad_2]
Source link