Cybercriminals Using YouTube to Spread Malware
Cybercriminals Using YouTube to Spread Malware
  • Alert & Advisory
  • March 23, 2023

Cybercriminal gangs are using AI-generated YouTube videos to distribute malware. Unsuspecting victims who watch these AI-generated tutorial videos will be duped into clicking on one of the links in the video description, which usually results in the download of data-stealing malware. Since November 2022, the number of YouTube videos containing such links has increased by 200-300% month on month.

Increasing Watering Hole Attacks in Nigeria
Increasing Watering Hole Attacks in Nigeria
  • Alert & Advisory
  • March 16, 2023

ngCERT recently observed several cases of watering hole attacks that target groups of people who are somehow connected - whether they work for the same company, belong to the same social club, or have a common interest/background. The goal of this attack is to compromise as many of these users' devices as possible and, in some cases, gain access to their organization's network. In other words, a watering hole attack occurs when cyber criminals use skills such as hacking and social engineering to target individuals, groups, or organizations on a website they frequent. Alternatively, the attacker can direct the victim(s) to a website that they have compromised.

Malicious Advertising Campaign Distributing FormBook Info-Stealer Malware
Malicious Advertising Campaign Distributing FormBook Info-Stealer Malware
  • Alert & Advisory
  • February 13, 2023

Cybercriminals are constantly seeking and coming up with new ways to distribute malware – with the latest method being through malicious advertisements. These malicious advertising, or malvertising campaign are used to spread .NET loaders, known as MalVirt, that deploy the FormBook information-stealing malware unto unsuspecting devices.

New Phishing Apps Discovered on Google Play Store
New Phishing Apps Discovered on Google Play Store
  • Alert & Advisory
  • January 30, 2023

Several phishing apps have recently been discovered on the Google Play Store. These apps can be games or investment services; however, they are designed to steal sensitive user information. The apps have been downloaded 450, 000 times in total.

Phishing Emails with OneNote Attachments Used to Disseminate RATs
Phishing Emails with OneNote Attachments Used to Disseminate RATs
  • Alert & Advisory
  • January 24, 2023

A new method of delivering Remote Access Trojans (RATs) has been discovered using Microsoft OneNote attachments (these use ‘.one’ as an extension). Since the ubiquitous use of malicious Word or Excel documents is now easily identified by users, threat actors are resorting to other means in order to fool unsuspecting victims into downloading malicious files. Microsoft OneNote is a free note-taking software that can either be downloaded online or is included as part of Microsoft’s Office suite of applications.

Related Articles