Malware may spread via FB Messenger
Malware may spread via FB Messenger
Digmine was rst seen in South KoreaAnew cryptocurrency-mining bot, named “Digmine”, that was rst observed in South Korea, is spreading fast through Facebook Messenger across the world, Tokyo-headquartered cybersecurity major Trend Micro has warned. After South Korea, it has
since spread to Vietnam, Azerbaijan, Ukraine, the Philippines, Thailand and Venezuela. It is likely to reach other countries soon, given the way it propagates, the report said. Facebook
Messenger
works across dierent platforms but “Digmine” only aects the Messenger’s desktop or web browser (Chrome) version. If the le is opened on other platforms, the malware will not work as intended, Trend Micro said in a blogpost. “Digmine” is coded in AutoIt and sent to would-be victims posing as a video le but is actually an AutoIt executable script. If the user’s
Facebook account is set to log in automatically, “Digmine” will manipulate Facebook Messenger in order to send a link to the le to the account’s friends. The abuse of Facebook is
limited to propagation for now, but it wouldn’t be implausible for attackers to hijack the Facebook account itself down the line. This functionality’s code is pushed from the commandand-control server, which means it can be updated. Amodus operandi of
cryptocurrency-mining botnets and particularly for “Digmine”, is to stay in the victim’s system for as long as possible. It also wants to infect as many machines as possible.
Celebra
Comments
Post a Comment