Unit 42 researchers discovered a large-scale campaign called ApateWeb that delivers scareware, potentially unwanted programs, and other scam pages. The campaign uses deceptive emails and JavaScript embedded on websites to distribute its malicious content. ApateWeb employs evasion tactics to elude detection, including redirecting to search engines, displaying error pages to bots, and using wildcard DNS. The campaign has remained active since 2022 and has a significant impact on internet users.

12m read timeFrom unit42.paloaltonetworks.com
Post cover image
Table of contents
Executive SummaryTable of ContentsCampaign Infrastructure and WorkflowCampaign DisseminationConclusionIndicators of CompromiseAcknowledgements

Sort: