Hackers abuse Zoom remote control feature for crypto-theft attacks
ID: df38f879-6073-5139-9177-d3d6ee173c0f
STIX ID: report--df38f879-6073-5139-9177-d3d6ee173c0f
Feed Name: Bleeping Computer
Trail of Bits warns of an 'Elusive Comet' campaign targeting cryptocurrency users via fake Bloomberg interview invitations scheduled through Calendly; attackers use authentic-looking Zoom meetings, rename themselves to 'Zoom' to trick victims into approving remote-control requests, and then steal funds, install backdoors, or exfiltrate data. The report documents an attempted attack on Trail of Bits' CEO and recommends mitigations such as enforcing PPPC profiles to block accessibility access and removing the Zoom client from high-value environments.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
