Skip to main content

Researchers At Kaspersky Labs Have Uncovered A New Facebook Messenger Malware


The ill-famed cyber criminals are known for trying out new attack vectors to attack and surprise the unsuspecting internet users. These days, they are using Facebook Messenger as a means of fooling the users into visiting fake versions of popular websites. It’s becoming a lucrative
means of spreading a malware via Facebook is easy; you act as a honey pot when your friends click on malicious links.
The most recent threat uncovered by the security researchers at Kaspersky is a multi-platform malware that uses lots of domains to block tracking and complete its job of making people click on the links.
messenger malware
Image: Kaspersky
While the malware initially spreads via Messenger, the actual mechanism of spreading is still unknown as the research is ongoing. However, it’s evident that the malware uses the popular social engineering technique. You might receive a message that reads “<your name> Video,” accompanied by a bit(dot)ly link.
messenger malware 1
Image: Kaspersky
Once you’ll click the Messenger Malware link, you’ll be taken to a Google Doc page. The new page will already have your picture, which is taken from your Facebook, making you less suspecting. The landing page will look like a playable movie. In case you end up clicking on the fake movie, you’ll be redirected to different websites which gather information regarding your OS, browser, etc.
You might argue that such attacks aren’t new. But, what sets this Messenger malware apart is its ability to offer different landing pages by changing the User-Agent header. It’s called a domain chain.
For example, if you’ll use Firefox, you’ll be taken to a page displaying Fake Flash update notice and different Windows executables, which are basically adware. In case of Chrome, you’ll be taken to a fake YouTube page with a popup for downloading a malicious extension.
As this malware is cross-platform, it affects MacOS Safari and attempts to download adware. Linux is also affected, according to The Hacker News.
The simplest way to defeat such Messenger Malware attacks is to avoid clicking on random and shady links. Keep your security solution updates and make your friends/family aware of such attacks.

Comments

Follow Us

WHAT'S HOT

Virtual and Augmented Reality: Transforming The Way We Look At The Internet and Data Security

Virtual and Augmented Reality have redefined every aspect of our modern world ranging from gaming, music, and pop culture, to business, human interaction, and development. However, ‘with great power comes great responsibility’. When it comes to a technology slowly becoming a part of some of our most sensitive aspects in our lives (finances, identity, and health), ensuring its safety is highly important. Despite this, many companies have certainly not done their part to ensure the better virtual reality security and, in turn,

Twin sisters CONJOINED at abdomen, liver and umbilical cord die soon after birth (photo)

> The Siamese twins who were born in Zambia a few days ago passed away > They were joined at the chest > The babies shared one abdomen, liver and umbilical cord The conjoined twins who had been born at KITWE Central Hospital in Zambia a few days ago, have passed away. The Siamese girls were delivered by a 19-year-old woman. They were joined by the chest, sharing one abdomen, liver and umbilical cord.

Which Is The Best Linux Distro For Beginners? — 2017 Edition

Are you looking for  a Linux distro that’s suitable for new users who are willing to start   an exciting Linux journey? Well, you’re at the right place. These days, Linux Mint is giving a tough competition to Ubuntu as it’s very beginner-friendly. Our other top recommendations are Zorin OS (which looks a lot like Windows operating system) and lightweight Linux Lite.

Google’s Open Source DIY Kit Turns Your Raspberry Pi Into An AI Assistant

The latest edition of the MagPi magazine includes a DIY kit created by Google that can be used to create a custom Google Home device powered by Raspberry Pi. A user can take advantage of the Google Assistant SDK and Google Cloud Speech API to enable voice control in their projects.