Hackers Use Facebook Ads to Spread JSCEAL Malware via Fake Cryptocurrency Trading Apps
Researchers studying cybersecurity are drawing attention to a campaign that uses phony cryptocurrency trading apps to spread JSCEAL, a built V8 JavaScript (JSC) virus that can steal wallets and passwords.
According to Check Point, the activity uses thousands of malicious Facebook ads to try to fool unwary users into visiting fake websites that tell them to install the fake apps. These advertisements are sent through either newly established or stolen accounts.
According to an examination by the company, the actors divide the functionality of the installer into various parts and, most significantly, transfer some functionality to the JavaScript files within the compromised websites. At each level of the operation, the attackers can modify their techniques and payloads thanks to a mod...

