logo

Follow Up on Russian Scam

ID: 83ce47a9-3b12-51b8-9fd9-7c92132473a2

STIX ID: report--83ce47a9-3b12-51b8-9fd9-7c92132473a2

Feed Name: Zscaler Security Research Blog

Threat Score
40/100

Date Published: 2025-04-02

Date Updated: 2026-05-01

...
...

This report documents a campaign of website compromises across multiple hosting providers where attackers inject hidden spam links and upload redirect pages (e.g., under /modules/mod_wdbanners/ and /includes/) to conduct Blackhat SEO, promote online pharmacies, and redirect victims to Russian premium-SMS scams and US “work from home” frauds; the author lists example infected URLs and explains the malicious techniques and user-facing impacts (unexpected SMS charges and fraudulent purchases).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.