Attackers are using a traffic-tracking feature in Google Ads to distribute info-stealing malware disguised as legitimate installers for popular workplace collaboration apps like Slack and Notion. The malware, known as Rhadamanthys stealer, collects private data from infected systems without the user's knowledge. Users should pay attention to the URLs they see when accessing websites, rather than the URLs shown on ad banners, to avoid falling for malicious campaigns.

3m read timeFrom darkreading.com
Post cover image
Table of contents
Redirects to Stealer DownloadsPay Attention to Ad-Delivered URLs

Sort: