Malvertising is quickly becoming a new trend among hackers and other internet criminals A new attack was recently discovered by security experts, even though the campaign had been running for over a year. With several million hits per day, this was one of the most successful malvertising actions to date.Various types of malware, including ransomware, were spread to unsuspecting users during this time.
It is rather worrisome to find out such a malicious spam campaign can go virtually undetected for quite some time. It was only last week the operation was shut down by the attackers themselves, rather than due to law enforcement or other parties getting involved. Interestingly enough, the campaign made use of steganography to hide information without the data transmitted to potential targets.
At the same time, it is important to note malware developers have been using steganography to hide the real payload for quite some time now. Up until this point, that tactic has not been deployed on such a large scale, though. All it took was getting users to visit a specific landing page, which acts as a redirect to a cloned version of legitimate websites.
Hardly anyone will be surprised to know this malvertising campaign has been used primarily to spread the Neutrino Exploit Kit. Internet criminals have been using this toolset to distribute ransomware, trojans, and other malware to potential targets all over the world. Some of the malware was even region-specific, indicating this was a collaboration between different collectives to infect users worldwide.
Multiple banking trojans were discovered, according to Threatpost. Although a lot of advertising networks were caught up in this wide-scale attack, some of them managed to react upon receiving a notification. Thanks to the hard work of these industry leaders, the network lost some of its potency in the end.
Bringing these malvertising campaigns to a halt at an early stage is not an easy task by any means. Particularly when steganography is involved, the uphill battle becomes even steeper. For now, security researchers are trying to come up with new toolkits to help in this regard, but it will take some time until they are fully developed.
Image credit 1
If you liked this article follow us on Twitter @themerklenews and make sure to subscribe to our newsletter to receive the latest bitcoin and altcoin price analysis and the latest cryptocurrency news.
Velocity Ticket is trying to fix a major gap in businesses, and the approach it…
Axelar is moving fast to contain damage after identifying a security incident that has resulted…
suiUSDe now has a dedicated landing page. The token, officially the eSui Dollar, comes out…
Ventuals has fully wound down its HIP-3 DEX, and vHYPE withdrawals are now open. The…
Avalanche has launched the Avalanche Payments Collective, bringing together 28 organizations spanning nearly every layer…
A wallet tracked as 0x5f91 just opened a fresh 5x leveraged long on ASTER, putting…