March 2010 April 2010 May 2010 June 2010 July 2010
August 2010
September 2010 October 2010
November 2010
December 2010
January 2011
February 2011 March 2011 April 2011 May 2011 June 2011 July 2011 August 2011 September 2011 October 2011 November 2011 December 2011 January 2012 February 2012 March 2012 April 2012 May 2012 June 2012 July 2012 August 2012 September 2012 October 2012 November 2012 December 2012 January 2013 February 2013 March 2013 April 2013 May 2013 June 2013 July 2013 August 2013 September 2013 October 2013 November 2013 December 2013 January 2014 February 2014 March 2014 April 2014 May 2014 June 2014 July 2014 August 2014 September 2014 October 2014 November 2014 December 2014 January 2015 February 2015 March 2015 April 2015 May 2015 June 2015 July 2015 August 2015 September 2015 October 2015 November 2015 December 2015 January 2016 February 2016 March 2016 April 2016 May 2016 June 2016 July 2016 August 2016 September 2016 October 2016 November 2016 December 2016 January 2017 February 2017 March 2017 April 2017 May 2017 June 2017 July 2017 August 2017 September 2017 October 2017 November 2017 December 2017 January 2018 February 2018 March 2018 April 2018 May 2018 June 2018 July 2018 August 2018 September 2018 October 2018 November 2018 December 2018 January 2019 February 2019 March 2019 April 2019 May 2019 June 2019 July 2019 August 2019 September 2019 October 2019 November 2019 December 2019 January 2020 February 2020 March 2020 April 2020 May 2020 June 2020 July 2020 August 2020 September 2020 October 2020 November 2020 December 2020 January 2021 February 2021 March 2021 April 2021 May 2021 June 2021 July 2021 August 2021 September 2021 October 2021 November 2021 December 2021 January 2022 February 2022 March 2022 April 2022 May 2022 June 2022 July 2022 August 2022 September 2022 October 2022 November 2022 December 2022 January 2023 February 2023 March 2023 April 2023 May 2023 June 2023 July 2023 August 2023 September 2023 October 2023 November 2023 December 2023 January 2024 February 2024 March 2024 April 2024 May 2024 June 2024 July 2024 August 2024 September 2024
1 2 3 4 5 6 7 8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
News Every Day |

Beware of encrypted PDFs as latest trick to deliver malware to you

Russian-backed hackers are using malware disguised as a PDF encryption tool to steal your information. According to the Threat Analysis Group report, Coldriver will send victims encrypted PDFs. 

When the unsuspecting victim replies saying they can't see the PDF, the group will send a download link that poses as an encryption tool. But it's really malware.

According to Threat Analysis Group (TAG), which is a specialized team within Google that focuses on identifying and countering various security threats, Coldriver primarily deals with phishing attacks. So this new malware-based attack is relatively new territory for the group.

CLICK TO GET KURT’S FREE CYBERGUY NEWSLETTER WITH SECURITY ALERTS, QUICK VIDEO TIPS, TECH REVIEWS AND EASY HOW-TO’S TO MAKE YOU SMARTER

The attack itself is pretty simple. As previously mentioned, attackers will send an encrypted PDF and then a malware-loaded "encryption tool" once the victims respond. That "encryption tool" will even display a fake PDF document to really sell the ruse. However, it's really backdooring a piece of malware called Spica into your device.

RUSSIAN MALWARE COMPROMISES ENERGY DEPARTMENT, OTHER FEDERAL AGENCIES

Spica will steal cookies from Google Chrome, FireFox, Edge and Opera in order to get your information. Google says it's been in play since September 2023. However, there are instances of Coldriver dating back to 2022.

Google says it's added all domains, websites and files involved in the attacks to its Safe Browsing service. The company has also notified targeted users that they were at risk of an attack.

MORE: HOW CRYPTO IMPOSTERS ARE USING CALENDLY TO INFECT MACS WITH MALWARE 

1. Don’t download bootleg software: It’s not worth the risk to download bootleg software. It exposes your device to potential security threats, such as viruses and spyware.  If someone emails you a link for a download, make sure it's from a reputable source and scan it. Downloading software from reputable app stores is definitely the way to go to protect your devices.

2. Don’t click on suspicious links or files: If you encounter a link that looks suspicious, misspelled, or unfamiliar, avoid clicking on it. Instead, consider going directly to the company’s website by manually typing in the web address or searching for it in a trusted search engine. Most often, the first or second result that comes up is legitimate. If you see the word "Sponsored "above the search result, take a beat before clicking it and consider clicking on the result below it.

3. Update your device with software regularly: Regularly updating your device’s software is crucial for security because it ensures that you receive the latest patches, bug fixes, and security enhancements. These updates help protect your device from vulnerabilities and potential threats that could be exploited by malicious actors.

4. Have good antivirus software: The best way to protect yourself from clicking malicious links that install malware that may get access to your private information is to have antivirus protection installed on all your devices. This can also alert you of any phishing emails or ransomware scams. Get my picks for the best 2024 antivirus protection winners for your Mac, Windows, Android & iOS devices.

MORE: HOW HACKERS ARE EXPLOITING WINDOWS SMARTSCREEN VULNERABILITY TO SPREAD MALWARE

If it has already happened, and you’ve been hacked, then you should take immediate action to minimize the damage and secure your device. Here are some steps that you can follow:

If hackers have recorded your passwords, they could access your online accounts and steal your data or money. On another device (i.e., your laptop or desktop), you should change your passwords for all your important accounts, such as email, banking, social media, etc. You want to do this on another device so the hacker isn’t’ recording you setting up your new password on your hacked device. And you should also use strong and unique passwords that are hard to guess or crack. You can also use a password manager to generate and store your passwords securely.

You’ll want to activate two-factor authentication for an extra layer of security.

You should check your online accounts and transactions regularly for any suspicious or unauthorized activity. If you notice anything unusual, report it to the service provider or the authorities as soon as possible. You should also review your credit reports and scores to see if there are any signs of identity theft or fraud.

Identity Theft protection companies can monitor personal information like your home title, Social Security Number (SSN), phone number, and email address and alert you if it is being used to open an account.  They can also assist you in freezing your bank and credit card accounts to prevent further unauthorized use by criminals. See my tips and best picks on how to protect yourself from identity theft.

GET FOX BUSINESS ON THE GO BY CLICKING HERE

If hackers have obtained your bank or credit card information, they could use it to make purchases or withdrawals without your consent. You should contact your bank and credit card companies and inform them of the situation. They can help you freeze or cancel your cards, dispute any fraudulent charges, and issue new cards for you.

If hackers have accessed your email or social media accounts, they could use them to send spam or phishing messages to your contacts. They could also impersonate you and ask for money or personal information. You should alert your contacts and warn them not to open or respond to any messages from you that seem suspicious or unusual.

MORE: STEALTHY BACKDOOR MAC MALWARE THAT CAN WIPE OUT YOUR FILES

Hackers will also look for ways to get into your device. It's your job to make sure you stay on top of your security and browse the web safely. That includes being cautious of what you're downloading. Even if you receive a file from a trusted contact, you should do your due diligence.

Are you worried about more attacks from groups like Coldriver? How do you protect yourself? Let us know by writing us at Cyberguy.com/Contact.

For more of my tech tips & security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter.

Ask Kurt a question or let us know what stories you'd like us to cover.

Answers to the most asked CyberGuy questions:

Copyright 2024 CyberGuy.com. All rights reserved.

Москва

Пассажирский поезд Бишкек-Москва может начать курсировать в 2025 году

Married At First in chaos as scores of women accuse contestant of abuse – just one year after arrest of another groom

The £14,000,000 space-age tower left to rot next to UK motorway

I scored my ultimate dream home for incredible bargain price…but then my neighbour put up ‘outrageous’ fence & RUINED it

Watch Real Madrid star Tchouameni’s bizarre ‘Fifa glitch’ tackle as optical illusion leaves fans completely baffled

Ria.city






Read also

‘Sketch’ Review: Tony Hale Is Terrific in Seth Worley’s Charming Spielbergian Monster Movie

We Live in Time Failed to Move My Cold, Cold Heart

Opinion: Selecting Tottenham’s strongest XI when everyone is fit

News, articles, comments, with a minute-by-minute update, now on Today24.pro

News Every Day

Los Gatos jumps on Liberty early, shuts down ground game and forces visitors to the air

Today24.pro — latest news 24/7. You can add your news instantly now — here


News Every Day

Los Gatos jumps on Liberty early, shuts down ground game and forces visitors to the air



Sports today


Новости тенниса
ATP

ATP и WTA могут завершить коммерческое слияние в первой половине 2025 года (Front Office Sports)



Спорт в России и мире
Москва

Сборная Россия не сможет сразу вылететь из Таиланда в Россию



All sports news today





Sports in Russia today

Москва

Сборная Россия не сможет сразу вылететь из Таиланда в Россию


Новости России

Game News

Methods 4: The Best Detective выйдет в декабре на iOS и Android


Russian.city


Москва

Росгвардейцы принимают участие в обеспечении правопорядка в период проведения Единого дня голосования в Подмосковье


Губернаторы России
Росгвардия

Сотрудники Росгвардии задержали нетрезвого водителя в подмосковных Люберцах


Путин поставил Камалу Харрис в неловкое положение - Милонов

Актриса Ольга Кабо заявила, что москвичи могут гордиться своим городом

Выставка «Я ты мы другое» в музее-квартире И.Д. Сытина

Росгвардейцы принимают участие в обеспечении правопорядка в период проведения Единого дня голосования в Подмосковье


“Фанагория” получила сразу 7 высоких наград Международного конкурса Asia Wine Сhallenge в китайском Гонконге

Михаил Шуфутинский: "Я за любой творческий кипеж..."

Shaman спел на «Авторадио» всенародные хиты

Студия Звукозаписи в Москве. Создание Песен, Музыки, Аранжировок.


Роналду первым в мире забил 900-й гол, Соболенко вышла в финал US Open. Главное к утру

Медведев о матче с Синнером: «Постараюсь больше думать об «Уимблдоне», чем об Australian Open»

Рахимова победила на турнире в Гвадалахаре

Камилла Рахимова выиграла «челленджер» в Гвадаллахаре



Росгвардейцы принимают участие в обеспечении правопорядка в период проведения Единого дня голосования в Подмосковье

Книга года. В Москве наградили лауреатов главной книжной премии

Посол Ирана Джалали заявил о возможном заключении в октябре договора о стратегическом партнерстве Москвы и Тегерана

Кабаре-бэнд «Елисейские поля» выступил на фуд-корте ТРЦ «Нора»


Студия Звукозаписи в Москве. Создание Песен, Музыки, Аранжировок.

Сотрудники Росгвардии задержали нетрезвого водителя в подмосковных Люберцах

Владимир Путин назвал Москву символом оплотом государственности

Делегация ГУАП посетила научно-технологический центр и заводы ПАО «КАМАЗ»


Костомаров показал, как впервые сыграл в футбол с помощью протезов

В Павловском Посаде нашли поджигателей леса

Военэксперт Матвийчук: утрата Покровска и Угледара обратит ВСУ в бегство

Не выходит из воды. Что нужно для антистресса Наталье Бондарчук?



Путин в России и мире






Персональные новости Russian.city
Песня

Эта песня отражение семейной трагедии: Александр Иванов о «Песне про любовь»



News Every Day

The £14,000,000 space-age tower left to rot next to UK motorway




Friends of Today24

Музыкальные новости

Персональные новости