March 2010 April 2010 May 2010 June 2010 July 2010
August 2010
September 2010 October 2010
November 2010
December 2010
January 2011
February 2011 March 2011 April 2011 May 2011 June 2011 July 2011 August 2011 September 2011 October 2011 November 2011 December 2011 January 2012 February 2012 March 2012 April 2012 May 2012 June 2012 July 2012 August 2012 September 2012 October 2012 November 2012 December 2012 January 2013 February 2013 March 2013 April 2013 May 2013 June 2013 July 2013 August 2013 September 2013 October 2013 November 2013 December 2013 January 2014 February 2014 March 2014 April 2014 May 2014 June 2014 July 2014 August 2014 September 2014 October 2014 November 2014 December 2014 January 2015 February 2015 March 2015 April 2015 May 2015 June 2015 July 2015 August 2015 September 2015 October 2015 November 2015 December 2015 January 2016 February 2016 March 2016 April 2016 May 2016 June 2016 July 2016 August 2016 September 2016 October 2016 November 2016 December 2016 January 2017 February 2017 March 2017 April 2017 May 2017 June 2017 July 2017 August 2017 September 2017 October 2017 November 2017 December 2017 January 2018 February 2018 March 2018 April 2018 May 2018 June 2018 July 2018 August 2018 September 2018 October 2018 November 2018 December 2018 January 2019 February 2019 March 2019 April 2019 May 2019 June 2019 July 2019 August 2019 September 2019 October 2019 November 2019 December 2019 January 2020 February 2020 March 2020 April 2020 May 2020 June 2020 July 2020 August 2020 September 2020 October 2020 November 2020 December 2020 January 2021 February 2021 March 2021 April 2021 May 2021 June 2021 July 2021 August 2021 September 2021 October 2021 November 2021 December 2021 January 2022 February 2022 March 2022 April 2022 May 2022 June 2022 July 2022 August 2022 September 2022 October 2022 November 2022 December 2022 January 2023 February 2023 March 2023 April 2023 May 2023 June 2023 July 2023 August 2023 September 2023 October 2023 November 2023 December 2023 January 2024 February 2024 March 2024 April 2024
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
News Every Day |

Beware of encrypted PDFs as latest trick to deliver malware to you

Beware of encrypted PDFs as latest trick to deliver malware to you

Russian-backed hackers are using malware disguised as a PDF encryption tool to steal your information. According to the Threat Analysis Group report, Coldriver will send victims encrypted PDFs. 

When the unsuspecting victim replies saying they can't see the PDF, the group will send a download link that poses as an encryption tool. But it's really malware.

According to Threat Analysis Group (TAG), which is a specialized team within Google that focuses on identifying and countering various security threats, Coldriver primarily deals with phishing attacks. So this new malware-based attack is relatively new territory for the group.

CLICK TO GET KURT’S FREE CYBERGUY NEWSLETTER WITH SECURITY ALERTS, QUICK VIDEO TIPS, TECH REVIEWS AND EASY HOW-TO’S TO MAKE YOU SMARTER

The attack itself is pretty simple. As previously mentioned, attackers will send an encrypted PDF and then a malware-loaded "encryption tool" once the victims respond. That "encryption tool" will even display a fake PDF document to really sell the ruse. However, it's really backdooring a piece of malware called Spica into your device.

RUSSIAN MALWARE COMPROMISES ENERGY DEPARTMENT, OTHER FEDERAL AGENCIES

Spica will steal cookies from Google Chrome, FireFox, Edge and Opera in order to get your information. Google says it's been in play since September 2023. However, there are instances of Coldriver dating back to 2022.

Google says it's added all domains, websites and files involved in the attacks to its Safe Browsing service. The company has also notified targeted users that they were at risk of an attack.

MORE: HOW CRYPTO IMPOSTERS ARE USING CALENDLY TO INFECT MACS WITH MALWARE 

1. Don’t download bootleg software: It’s not worth the risk to download bootleg software. It exposes your device to potential security threats, such as viruses and spyware.  If someone emails you a link for a download, make sure it's from a reputable source and scan it. Downloading software from reputable app stores is definitely the way to go to protect your devices.

2. Don’t click on suspicious links or files: If you encounter a link that looks suspicious, misspelled, or unfamiliar, avoid clicking on it. Instead, consider going directly to the company’s website by manually typing in the web address or searching for it in a trusted search engine. Most often, the first or second result that comes up is legitimate. If you see the word "Sponsored "above the search result, take a beat before clicking it and consider clicking on the result below it.

3. Update your device with software regularly: Regularly updating your device’s software is crucial for security because it ensures that you receive the latest patches, bug fixes, and security enhancements. These updates help protect your device from vulnerabilities and potential threats that could be exploited by malicious actors.

4. Have good antivirus software: The best way to protect yourself from clicking malicious links that install malware that may get access to your private information is to have antivirus protection installed on all your devices. This can also alert you of any phishing emails or ransomware scams. Get my picks for the best 2024 antivirus protection winners for your Mac, Windows, Android & iOS devices.

MORE: HOW HACKERS ARE EXPLOITING WINDOWS SMARTSCREEN VULNERABILITY TO SPREAD MALWARE

If it has already happened, and you’ve been hacked, then you should take immediate action to minimize the damage and secure your device. Here are some steps that you can follow:

If hackers have recorded your passwords, they could access your online accounts and steal your data or money. On another device (i.e., your laptop or desktop), you should change your passwords for all your important accounts, such as email, banking, social media, etc. You want to do this on another device so the hacker isn’t’ recording you setting up your new password on your hacked device. And you should also use strong and unique passwords that are hard to guess or crack. You can also use a password manager to generate and store your passwords securely.

You’ll want to activate two-factor authentication for an extra layer of security.

You should check your online accounts and transactions regularly for any suspicious or unauthorized activity. If you notice anything unusual, report it to the service provider or the authorities as soon as possible. You should also review your credit reports and scores to see if there are any signs of identity theft or fraud.

Identity Theft protection companies can monitor personal information like your home title, Social Security Number (SSN), phone number, and email address and alert you if it is being used to open an account.  They can also assist you in freezing your bank and credit card accounts to prevent further unauthorized use by criminals. See my tips and best picks on how to protect yourself from identity theft.

GET FOX BUSINESS ON THE GO BY CLICKING HERE

If hackers have obtained your bank or credit card information, they could use it to make purchases or withdrawals without your consent. You should contact your bank and credit card companies and inform them of the situation. They can help you freeze or cancel your cards, dispute any fraudulent charges, and issue new cards for you.

If hackers have accessed your email or social media accounts, they could use them to send spam or phishing messages to your contacts. They could also impersonate you and ask for money or personal information. You should alert your contacts and warn them not to open or respond to any messages from you that seem suspicious or unusual.

MORE: STEALTHY BACKDOOR MAC MALWARE THAT CAN WIPE OUT YOUR FILES

Hackers will also look for ways to get into your device. It's your job to make sure you stay on top of your security and browse the web safely. That includes being cautious of what you're downloading. Even if you receive a file from a trusted contact, you should do your due diligence.

Are you worried about more attacks from groups like Coldriver? How do you protect yourself? Let us know by writing us at Cyberguy.com/Contact.

For more of my tech tips & security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter.

Ask Kurt a question or let us know what stories you'd like us to cover.

Answers to the most asked CyberGuy questions:

Copyright 2024 CyberGuy.com. All rights reserved.

Москва

Сергей Собянин рассказал о преимуществах новых поездов «Иволга 3.0»

Couple who won Come Dine With Me posed as customs officers to steal drugs as part of scam

Premier League icon beats big-earning poker pro to £42,000 pot as he keeps low profile at table in hoodie and sunglasses

Nvidia employees are getting richer with a 'special Jensen grant' that boosts their stock awards by 25%

The Masters 2024: Rory McIlroy feels he can still win at Augusta National despite swing ‘feeling horrific’ in round two

Ria.city






Read also

Inside RAF’s ‘complex’ mission to shoot down Iranian drones bound for Israel in UK’s biggest air battle since Falklands

The Lakers should throw their play-in vs. the Pelicans to avoid the Nuggets

2020 Biden on Trump: “As the Walls Close in on This Man, I’m Worried That He’s Going to Get Us to War in Iran” (VIDEO)

News, articles, comments, with a minute-by-minute update, now on Today24.pro

News Every Day

The Masters 2024 prize money: How much does Green Jacket winner take home from Augusta National?

Today24.pro — latest news 24/7. You can add your news instantly now — here


News Every Day

Couple who won Come Dine With Me posed as customs officers to steal drugs as part of scam



Sports today


Новости тенниса
Новак Джокович

Джокович вышел в полуфинал турнира в Монте-Карло



Спорт в России и мире
Москва

Экс-футболист Деменко призвал назначить в "Спартак" российского тренера



All sports news today





Sports in Russia today

Москва

Экс-футболист Деменко призвал назначить в "Спартак" российского тренера


Новости России

Game News

In this strategy city builder you'll grow your capital through 2,500 years of history


Russian.city


Новак Джокович

Джокович признался, что отпраздновал победу в стиле Медведева


Губернаторы России
Арцах

"Предстоящая встреча Путина и Пашиняна может стать переломным моментом в российско-армянских отношениях": Михаил Александров


Замена полотенцесушителя в Москве и Московской области

Подключение системы теплого пола в Москве и Московской области

Шапки женские на Wildberries — скидки от 398 руб. (на новые оттенки)

Иран впервые в истории напрямую напал на Израиль


Звездные разборки: Stigmsta в Твери, новая песня Полины Гагариной и дуэт певицы MONA и Басты

«Времена года» Антонио Вивальди прозвучат в Эрмитажном театре

Шапки женские на Wildberries — скидки от 398 руб. (на новые оттенки)

Рэпкор от Басты: Rabochiy Gorodok - Lombard


Казахстан разгромили в «Кубке Билли Джин Кинг»

Джокович вышел в полуфинал турнира в Монте-Карло

Юлия Путинцева выразила отношение к выступлениям за сборную Казахстана

WTA вынесла вердикт Рыбакиной в противостоянии со Швентек и Соболенко



Шапки женские вязаные на Wildberries, 2024 — новый цвет от 392 руб. (модель 466)

Кредиты оказались чисто женскими // По делу о хищении средств Промсвязьбанка судят лишь предполагаемых исполнителей

5 ЛЕТ НА СТРАЖЕ ВЕРНОСТИ!

"Предстоящая встреча Путина и Пашиняна может стать переломным моментом в российско-армянских отношениях": Михаил Александров


Шапки женские вязаные на Wildberries, 2024 — новый цвет от 392 руб. (модель 466)

Искусственный интеллект на службе «Норникеля»

Алла Пугачёва планирует совершить короткий визит в Россию

Стратегия «Газпрома»: точки роста спроса на газ


СК: в Приморье поезд насмерть сбил мотоциклиста

Туляк стал победителем Всероссийского турнира по самбо в Москве

Мэр Красноярска откровенно рассказал о проблемах города в редакции NGS24.RU

В Санкт-Петербурге курьер спас российского 97-летнего ветерана от мошенников



Путин в России и мире






Персональные новости Russian.city
Моргенштерн

Моргенштерн* сделал Лизе Василенко предложение — она ответила



News Every Day

The Masters 2024: Rory McIlroy feels he can still win at Augusta National despite swing ‘feeling horrific’ in round two




Friends of Today24

Музыкальные новости

Персональные новости