DIRECTORY

  • Alerts
  • APTs
  • Blog
  • Books
  • Certifications
  • Cheat Sheets
  • Courses
  • Cyber Briefing
  • CyberDecoded
  • CyberReview
  • CyberStory
  • CyberTips
  • Definitions
  • Domains
  • Entertainment
  • FAQ
  • Frameworks
  • Hardware Tools
  • Incidents
  • Malware
  • News
  • Papers
  • Podcasts
  • Quotes
  • Reports
  • Tools
  • Threats
  • Tutorials
No Result
View All Result
  • Login
  • Register
  • Cyber Citizens
  • Cyber Professionals
  • Institutions
CyberMaterial
Get Help
  • Cyber Citizens
  • Cyber Professionals
  • Institutions
CyberMaterial
No Result
View All Result
Get Help
CyberMaterial
Home Alerts

New Malware Use Stolen Social Media Credentials for Cryptocurrency Mining

February 23, 2023
Reading Time: 2 mins read
in Alerts

 

Researchers from Bitdefender have discovered an ongoing malware campaign that is targeting Facebook and YouTube users. The malware, named S1deload Stealer, is a DLL side-loading threat that bypasses security defenses to execute malicious components.

The malware is able to steal user credentials, emulate human behavior to artificially boost video and other content engagement, assess the value of individual accounts, mine for BEAM cryptocurrency, and propagate the malicious link to the user’s followers.

The objective of the campaign is to hijack the user’s Facebook and YouTube accounts and rent out access to raise view counts and likes for videos and posts shared on the platforms.

More than 600 unique users have been impacted during the six-month period between July and December 2022. The majority of the infections are located in Romania, Turkey, France, Bangladesh, Mexico, Peru, and Canada. To achieve this, users are lured with adult-themed content via Facebook posts that contain links to ZIP archives, which, when extracted, triggers an intricate infection sequence leading to the deployment of the malware.

The stealer further captures saved credentials and cookies from web browsers, conducts Facebook profile checks, and also loads a cryptojacker that mines cryptocurrency without the victim’s knowledge or consent.

The malware author can create a feedback loop, as the more PCs they can infect, the more they can spam on Facebook, the more clicks they can generate to infect more PCs. The stealer has serious privacy implications for the victim infected with it, exfiltrating the victim’s saved credentials, including email, social media, or even financial accounts. The threat actor can access these accounts or sell them on the dark web.

 

Read More

Tags: AlertsAlerts 2023BitdefenderCryptocurrencyFacebookFebruary 2023InfostealersMalwareS1deloadYouTube
0
VIEWS
ADVERTISEMENT

Related Posts

TOR installers target crypto users

TOR installers target crypto users

March 29, 2023
ABB Security Advisory: RCCMD Vulnerability

ABB Security Advisory: RCCMD Vulnerability

March 29, 2023
Flaw in WiFi protocol allows plaintext leak

Flaw in WiFi protocol allows plaintext leak

March 29, 2023
Europol warns about AI abuse

Europol warns about AI abuse

March 29, 2023

More Articles

Entertainment

Pulse (2006)

November 3, 2020
Alerts

GitLab Issues Security Patch

June 6, 2022
Definition

Vein recognition – Definitions

January 25, 2023

“Blockchain’s characteristics do not provide an impenetrable panacea to all cyber ills…”

February 28, 2021

Security through data

Cybersecurity Domains

  • API Security
  • Business Continuity
  • Career Development
  • Compliance
  • Cryptography
  • HSM
  • KPIs / KRIs
  • Penetration Testing
  • Shift Left
  • Vulnerability Scan

Emerging Technologies

  • 5G
  • Artificial Intelligence
  • Blockchain
  • Cryptocurrency
  • Deepfake
  • E-Commerce
  • Healthcare
  • IoT
  • Quantum Computing

Frameworks

  • CIS Controls
  • CCPA
  • GDPR
  • NIST
  • 23 NYCRR 500
  • HIPAA

Repository

  • Books
  • Certifications
  • Definitions
  • Documents
  • Entertainment
  • Quotes
  • Reports

Threats

  • APTs
  • DDoS
  • Insider Threat
  • Malware
  • Phishing
  • Ransomware
  • Social Engineering

© 2023 | CyberMaterial | All rights reserved.

World’s #1 Cybersecurity Repository

  • About
  • Legal and Privacy Policy
  • Site Map
No Result
View All Result
  • Audience
    • Cyber Citizens
    • Cyber Professionals
    • Institutions
  • Highlights
    • Blog
    • CyberDecoded
    • Cyber Review
    • CyberStory
    • CyberTips
  • Cyber Risks
    • Alerts
    • Attackers
    • Domains
    • Incidents
    • Threats
  • Opportunities
    • Events
    • Jobs
  • Repository
    • Books
    • Certifications
    • Cheat Sheets
    • Courses
    • Definitions
    • Frameworks
    • Games
    • Hardware Tools
    • Memes
    • Movies
    • Papers
    • Podcasts
    • Quotes
    • Reports
  • Report Cyber Incident
  • GET HELP

Subscribe to our newsletter

© 2022 Cybermaterial - Security Through Data .

Welcome Back!

Sign In with Google
Sign In with Linked In
OR

Forgotten Password? Sign Up

Create New Account!

Sign Up with Google
Sign Up with Linked In
OR

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.