Malware News Supply Chain CAPTCHA Targets Auto Dealerships via Compromised Video Service

Wrecker4923

Level 2
Thread author
Apr 11, 2024
60

Summary:​

Over 100 auto dealerships were being abused compliments of a supply chain attack of a shared video service unique to dealerships. When active, the attack presented dealership visitors with a ClickFix webpage which led to a SectopRAT malware.

Source News Link:​

A security researcher has discovered that the websites of over 100 car dealerships have been compromised in a supply-chain attack that attempted to infect the PCs of internet visitors.

Comment:​

It's not just a questionable website now that will get you with a malware-loaded "CAPTCHA".
 

Marko :)

Level 25
Verified
Top Poster
Well-known
Aug 12, 2015
1,406
Pretty much all malware today is based on social engineering rather than hacking attacks itself. This one isn't an exception.

Before, you downloaded malicious file, ran it and it was enough for hackers to get access to your PC and your data. Today, hackers literally beg you and need to guide you to run malicious script for them to get access to your PC.
Before, to hack your online account, they just needed to find out your password and e-mail address. Now, they need to trick you into getting them access to your accounts pretending to be from the company itself.

Anyone with a bit of logic in their brain just can't fall on these anymore. Yesterday after a very long time, I got a scam mail sent from my own e-mail address to me. It said they installed Pegasus on all of my devices, took control of cameras and recorded me during sexual activity. Of course they threatened to send videos to all of my contacts if I don't pay 1,350$ to their LiteCoin address.
Too bad they spoofed my e-mail address so I can't reply. I wanted to tell them I won't be paying and that we should check out together if their contacts list is up-to-date. I don't want anyone missing out on such obviously, Hollywood-level, content.
 
  • Like
Reactions: Wrecker4923

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top