Skip to main content

Researchers At Kaspersky Labs Have Uncovered A New Facebook Messenger Malware


The ill-famed cyber criminals are known for trying out new attack vectors to attack and surprise the unsuspecting internet users. These days, they are using Facebook Messenger as a means of fooling the users into visiting fake versions of popular websites. It’s becoming a lucrative
means of spreading a malware via Facebook is easy; you act as a honey pot when your friends click on malicious links.
The most recent threat uncovered by the security researchers at Kaspersky is a multi-platform malware that uses lots of domains to block tracking and complete its job of making people click on the links.
messenger malware
Image: Kaspersky
While the malware initially spreads via Messenger, the actual mechanism of spreading is still unknown as the research is ongoing. However, it’s evident that the malware uses the popular social engineering technique. You might receive a message that reads “<your name> Video,” accompanied by a bit(dot)ly link.
messenger malware 1
Image: Kaspersky
Once you’ll click the Messenger Malware link, you’ll be taken to a Google Doc page. The new page will already have your picture, which is taken from your Facebook, making you less suspecting. The landing page will look like a playable movie. In case you end up clicking on the fake movie, you’ll be redirected to different websites which gather information regarding your OS, browser, etc.
You might argue that such attacks aren’t new. But, what sets this Messenger malware apart is its ability to offer different landing pages by changing the User-Agent header. It’s called a domain chain.
For example, if you’ll use Firefox, you’ll be taken to a page displaying Fake Flash update notice and different Windows executables, which are basically adware. In case of Chrome, you’ll be taken to a fake YouTube page with a popup for downloading a malicious extension.
As this malware is cross-platform, it affects MacOS Safari and attempts to download adware. Linux is also affected, according to The Hacker News.
The simplest way to defeat such Messenger Malware attacks is to avoid clicking on random and shady links. Keep your security solution updates and make your friends/family aware of such attacks.

Comments

Follow Us

WHAT'S HOT

Fraud: EFCC probes Elechi, arrests ex-Ebonyi commissioner

Abuja - Former Commissioner for Public Utilities in Ebonyi State, Benjamin Ogbonnaya Okah, has reportedly been arrested by the Economic and Financial Crimes Commission (EFCC) over alleged abuse of office and collection of N83m bribe. According to PUNCH, EFCC said in a statement on Tuesday that Okah was arrested on Monday following a petition by the Ebonyi State government on a $12, contract awarded to a United States Company, Califco Group. The graft agency also discovered that Okah allegedly “collected N83m gratification from the company between July 30, 2012 and

OnePlus Is Spying On It's Users -Here Is How To Disable It

The issue was first noticed by a UK-based security researcher named Chris Moore. He accidentally discovered an unfamiliar domain ( open.oneplus.net ) while he was busy with the SANS Holiday Hack Challenge.

Best Android Cleaner Apps You Need To Try Out Now

Cache files pile up over time and need to be cleared. Also, junk from ads and image thumbnails take up a lot of space. Android cleaner apps do a good job of finding unnecessary files and

Upcoming Intel Core i9 CPUs Are Intel’s Biggest Change In Years — Here Are Leaked Specifications

Image: Sweepr via AnandTech Intel might be planning a major change to their processor lineup. According to a leaked images, there are four Intel Core i9 processors, based on the SkyLake-X architecture, in the making. This is accompanied by two Intel Core i7 Kaby Lake-X CPUs. All of these are expected to release sometime in June 2017.