More

    Fake VPN checker tool lets hackers bypass antivirus protections




    • Attackers use fake Fortinet dialogs and social engineering to trick users into executing malware
    • Cache smuggling hides malware in browser cache, bypassing download and PowerShell detection tools
    • Malware is extracted from fake image files and deployed as FortiClientComplianceChecker.exe

    Hackers are using a combination of social engineering, cache smuggling, identity theft, and straight-up bluffing, to bypass common security protections and deploy malware onto victim’s computers, experts have said.

    Security researchers Expel, as well as an independent researcher with the alias P4nd3m1cb0y, observed websites pretending to be a pop-up dialog from Fortinet VPN’s “Compliance Checker”.


    https://cdn.mos.cms.futurecdn.net/DVYr26EgcJb68CRrjxuAW4-2560-80.jpg



    Source link

    Latest articles

    spot_imgspot_img

    Related articles

    spot_imgspot_img