Microsoft says malvertising campaign impacted 1 million PCs
ID: 62d1d06e-b1b3-517a-8e73-d093bf14d702
STIX ID: report--62d1d06e-b1b3-517a-8e73-d093bf14d702
Feed Name: Bleeping Computer
Microsoft disrupted a widespread malvertising campaign (tracked as Storm-0408) that redirected users of pirated streaming sites to malicious GitHub repositories and other hosts (Dropbox, Discord), resulting in multi-stage infections that perform system discovery, credential and data exfiltration, and deployment of NetSupport RAT and information stealers (including Lumma and Doenerium). The attack chain used embedded video redirectors to funnel victims through additional redirectors and sites, dropped PowerShell and AutoIt-based payloads that establish persistence and disable protections, and impacted a broad set of consumer and enterprise devices worldwide (nearly one million devices reported).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
