- Content source
- https://cybersecuritynews.com/hackers-leveraging-whatsapp/
Read more here:A new malware campaign targeting Brazilian users has emerged, using WhatsApp as its primary distribution channel to spread banking trojans and harvest sensitive information.
This sophisticated attack leverages social engineering by exploiting the trust victims place in their existing contacts, making the malicious files appear legitimate.
The campaign begins with phishing emails containing archived VBS scripts that employ advanced obfuscation techniques to evade detection by security software.
Once the initial payload runs, it downloads and installs Python and the Selenium WebDriver components, enabling automated interaction with WhatsApp Web.
The malware then injects malicious JavaScript code into the victim’s browser session, accessing WhatsApp’s internal APIs to enumerate contacts and distribute payloads.
This approach allows attackers to spread the infection without requiring QR code authentication by hijacking existing logged-in sessions by copying browser cookies and local storage data.
Hackers Leveraging WhatsApp to Silently Install Malware to Harvest Logs and Contact Details
A Brazil-focused malware campaign uses WhatsApp and phishing VBS scripts to spread banking trojans, harvest data, and automate attacks.
cybersecuritynews.com