TamperedChef Malware Spreads via Fake Software Installers in Ongoing Global Campaign

As part of a global malvertising campaign known as TamperedChef, threat actors are using phony installers that pose as well-known software to fool users into installing malware.

According to a recent analysis from the Acronis Threat Research Unit (TRU), the attacks’ ultimate objective is to create persistence and distribute JavaScript malware that enables remote access and control. According to the Singapore-based corporation, the campaign is still in progress, with fresh artifacts being found and related infrastructure continuing to function.

According to academics Darrel Virtusio and Jozsef Gegeny, the operator or operators rely on social engineering by employing common application names, malvertising, Search Engine Optimization (SEO), and exploited digital certificates in an effort to boost user confidence and avoid security detection.

A long-running effort known as “TamperedChef” has used installers for several utilities that appear to be genuine to spread the same-named information-stealing malware read more about TamperedChef Malware Spreads via Fake Software Installers in Ongoing Global Campaign.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *