Ransomware appeared to fake Edge browser updates, extorting users with Bitcoin
A ransomware attack campaign in South Korea is using a fake Edge update to fool users.
Security experts often stress the importance of software updates, but this has helped create a lucrative opportunity for cybercriminals, who have targeted Microsoft Edge users with updates. fake.
Fake software updates have been a frequent tactic employed by cybercriminals to trick users into downloading malware for years now. These malware often disguise themselves as urgent updates, in order to threaten and make it easy for them to fool gullible users.
In the past, Flash updates have often been the target of malware campaigns like this, Adobe killed Flash over a year ago, which is why cybercriminals have turned to browsers.
According to a blog post by cybersecurity company Malwarebytes, they have discovered that a new version of the Magnesium mining kit is tricking users into installing a fake Microsoft Edge browser update.
The Magnesium Mining Kit uses a series of spoofs to attack users in order to install ransomware on their systems. While Magnesium has been used to target users around the world with different strains of ransomware in the past, today it is mainly used to install Magniber ransomware on targets in South Korea.
According to Malwarebytes, the attack campaign begins with a user visiting an ad-laden website, where they encounter a malicious ad that redirects them to a 'portal' known as Magnigate. This gateway checks their IP address and browser to determine if a user should be hacked. If they match the established criteria, the user will then be redirected again to Magnigate's fake Edge update page.
Here, they are prompted to download an update for Microsoft Edge. This is actually a malicious Windows Application package (.appx) file. This file then downloads the Magniber ransomware, encrypts the file, and demands a ransom.
To avoid falling victim to this attack, users should be aware that Edge will automatically update when you restart it, so don't update from an unknown source.
You should read it
- The importance of correlating cybersecurity events
- How many types of malware do you know and how to prevent them?
- 10 typical malware types
- Mysterious malware threatens millions of routers and IoT devices
- What is Safe Malware? Why is it so dangerous?
- Can a VPN Fight Malware?
- Beware of BIOPASS malware hidden in Chinese online gambling sites
- Offers anti-malware software, protects IObit Malware Fighter 6 PRO computer, for $ 9.95, free of charge
- What is Malware? What kind of attack is Malware?
- The 4 most common ways to spread malware today
- Download the malware removal tool and clean up Malware Hunter PRO computer for $ 49.95 for free
- Rombertik malware appears to attack hard drive and delete MBR
Maybe you are interested
How to see your friends' recent online visits on Snapchat 4 ways to fix MSVCP140.dll error is missing on Windows computers CES 2022: ASUS ZenBook 17 Fold, one of the most beautiful laptop models ASUS has ever launched 4 Effective Ways To Boost Your Online Presence Recover deleted data - Recover data that was Ghost, Format AVEDEV function - The function returns the average absolute deviation of data points from their midpoint in Excel