Security company: a hacker, LinkedIn, pretended to be an "American pirate ship HR" and spread emails with malicious Trojans.
CTOnews.com, October 23, according to a press release from security company WithSecure, a few days ago, the security company found Vietnamese hackers posing as American merchant pirate ship HR in LinkedIn, sending emails with malicious Trojans DarkGate and RedLine Stealer to job seekers.
▲ source WithSecureWithSecure claimed that in an attack that occurred in August, hackers asked job seekers to download job information from specific links. After job seekers downloaded and opened files, the candidate's computer automatically ran hidden VBS code, which was implanted into a malicious Trojan DarkGate. The malicious code tried to uninstall WithSecure software on the computer 30 seconds after deployment, but without success.
CTOnews.com found that security companies have since discovered a number of similar attacks, and hackers spread a series of malicious emails including Ducktail, DarkGate, RedLine Stealer, Lobshot and other Trojans.
WithSecure believes that this may be the same group of hackers who previously spread the Ducktail Trojan, and suggested that job seekers be careful to download downloadable files sent by HR in platforms such as LinkedIn.
▲ diagram source WithSecure