Info-tec

Social media malware campaign from 2016 resurfaces, warns Kaspersky to Indian users

Hemani Sheth Mumbai | Updated on February 08, 2021 Published on February 08, 2021

A social media malware campaign from 2016 resurfaced in India in 2021, according to cybersecurity firm Kaspersky.

The cybersecurity firm has warned of a campaign similar to the one by the SilentFade gang spreading malware via social media, which was active in 2016. It has found its way back this year.

“The gang is known to utilize a combination of Windows trojan, browser injections, clever scripting, and a bug in the Facebook platform, making it a very sophisticated and rare modus operandi to target Facebook's users,” Kaspersky said.

The purpose of SilentFade's operations as part of the 2016 campaigns was to infect users with the trojan, hijack their browsers, and steal passwords and browser cookies to access their Facebook accounts.

“Once the cybercriminals had access, the group searched for accounts that had any type of payment method attached to their target's profile. For these accounts, SilentFade bought Facebook ads with the victim's funds,” explained Kaspersky.

“Then the cybercriminals start promoting their ads through the Facebook advertising platform. Despite operating only for a few months, Facebook revealed that the group managed to defraud infected users of more than $4 million, which they used to post malicious Facebook ads across the social network,” it said.

Kaspersky researchers have recently recorded a Frank rootkit, a malware which has infected devices with many similarities to the one run by the SilentFade gang.

According to Kaspersky's analysis, India ranks first with 603 infections in the last month, on the infected countries’ list by this rootkit. Brazil (255 infections) and Indonesia (221) followed at second and third position.

Follow us on Telegram, Facebook, Twitter, Instagram, YouTube and Linkedin. You can also download our Android App or IOS App.

Published on February 08, 2021
  1. Comments will be moderated by The Hindu Business Line editorial team.
  2. Comments that are abusive, personal, incendiary or irrelevant cannot be published.
  3. Please write complete sentences. Do not type comments in all capital letters, or in all lower case letters, or using abbreviated text. (example: u cannot substitute for you, d is not 'the', n is not 'and').
  4. We may remove hyperlinks within comments.
  5. Please use a genuine email ID and provide your name, to avoid rejection.