Drive-By Malware Uses Google Sites for Drive by Download Attacks
ID: 0223ab36-78fd-5e98-a55c-10624ecf628f
STIX ID: report--0223ab36-78fd-5e98-a55c-10624ecf628f
Feed Name: Security Ledger
Threat Score
**LoadPCBanker campaign leveraging Google Sites:** Researchers observed a drive-by malware campaign using Google Sites' File Cabinet to host executable files that appear benign, enabling silent installation and data theft (screenshots, clipboard, keystrokes) with SQL-based exfiltration; attacks have been observed targeting Brazilian online banking users and Netskope recommends blocking Google Sites uploads/downloads and external SQL connections while increasing user awareness.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
