Success breeds contempt -- or at least con attempts, as a new worm aimed at stealing financial info from iPhone Twitter app users shows.
Success breeds contempt -- or at least con attempts, as a new worm aimed at stealing financial info from iPhone Twitter app users shows.The new Twitter worm hides in hot-topic tweets. Those hot topics -- promises of hilarious videos, for example -- are fertile ground for quick, ill-considered clicks on links, at which point the worm sets to work.
This one, described on a PandaLabs blog dumps malware that steals financial info, PIN numbers and passwords.
The campaign is evidently being run from new Twitter accounts, rather than than from the thousands of hacked legit Twitter accounts for sale on the black market.
The keylogger drops in via a Java file drive-by, leading security firm F-secure to ask if "you really need Java in your browser."
Disabling Java is a good first step, but even so, the best first step remains to stop and think before you click on a link in a tweet of an e-mail.
Then don't click on it.
About the Author(s)
You May Also Like
Guarding the Cloud: Top 5 Cloud Security Hacks and How You Can Avoid Them
April 4, 2024Cybersecurity Strategies for Small and Med Sized Businesses
April 11, 2024Defending Against Today's Threat Landscape with MDR
April 18, 2024Securing Code in the Age of AI
April 24, 2024
Black Hat USA - August 3-8 - Learn More
August 3, 2024Cybersecurity's Hottest New Technologies: What You Need To Know
March 21, 2024Black Hat Asia - April 16-19 - Learn More
April 16, 2024