Hackers are hiding powerful info-stealing malware in fake free VPNs downloaded from GitHub, don’t get tricked




  • GitHub repositories host malware disguised as tools that gamers, and privacy-seekers are likely to download
  • The fake VPN campaign drops malware straight into AppData and hides it from plain view
  • Process injection through MSBuild.exe allows this malware to operate without triggering obvious alarms

Security experts have warned of an emerging new cyber threat involving fake VPN software hosted on GitHub.

A report from Cyfirma outlines how malware disguises itself as a “Free VPN for PC” and lures users into downloading what is, in fact, a sophisticated dropper for the Lumma Stealer.

https://cdn.mos.cms.futurecdn.net/gxnuN9b5v8rWYyuQbLtEAB.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img