Be aware of new schemes using fake Google's reCAPTCHA A recent phishing campaign impersonates Google in attacks against banking institutions and their users. investigators have documented a recent phishing campaign targeting online banking users that masquerades as Google in its attempt to robber valuable credentials. The emails in question contain a fake confirmation for a recent transaction, alongside a link to a malicious .PHP file. See also: This malware turns ATM hijacking into a slot machine gameThe page has a number of specifically defined user-agents that are limited to Google crawlers. If the demand is not Google crawler-linked -- in other words, alternative search engines are in use -- then the PHP script instead loads a fake Google reCAPTCHA made up of JavaScript and static HTML.
Fake Google reCAPTCHA used to hide Android banking malware
collected by :Maya Tony
Be aware of new schemes using fake Google's reCAPTCHA A recent phishing campaign impersonates Google in attacks against banking institutions and their users. investigators have documented a recent phishing campaign targeting online banking users that masquerades as Google in its attempt to robber valuable credentials. The emails in question contain a fake confirmation for a recent transaction, alongside a link to a malicious .PHP file. See also: This malware turns ATM hijacking into a slot machine gameThe page has a number of specifically defined user-agents that are limited to Google crawlers. If the demand is not Google crawler-linked -- in other words, alternative search engines are in use -- then the PHP script instead loads a fake Google reCAPTCHA made up of JavaScript and static HTML.
Be aware of new schemes using fake Google's reCAPTCHA A recent phishing campaign impersonates Google in attacks against banking institutions and their users. investigators have documented a recent phishing campaign targeting online banking users that masquerades as Google in its attempt to robber valuable credentials. The emails in question contain a fake confirmation for a recent transaction, alongside a link to a malicious .PHP file. See also: This malware turns ATM hijacking into a slot machine gameThe page has a number of specifically defined user-agents that are limited to Google crawlers. If the demand is not Google crawler-linked -- in other words, alternative search engines are in use -- then the PHP script instead loads a fake Google reCAPTCHA made up of JavaScript and static HTML.
Post a Comment