dice.camp is one of the many independent Mastodon servers you can use to participate in the fediverse.
A Mastodon server for RPG folks to hang out and talk. Not owned by a billionaire.

Administered by:

Server stats:

1.6K
active users

#malvertising

1 post1 participant0 posts today
LMG Security<p>Cybercriminals are using Google Ads to hijack accounts, steal data, and clone websites using AI—and it’s happening faster than you think.</p><p>Want to keep your company safe? Watch our latest video: Malvertising Attacks: How Google Ad Spoofed Account Attacks Work. You'll learn how these attacks work, why phishing is moving beyond email, and what practical steps you can take to defend your organization. <a href="https://youtu.be/Q_qTvyVlGwc" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">youtu.be/Q_qTvyVlGwc</span><span class="invisible"></span></a></p><p><a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/Malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malvertising</span></a> <a href="https://infosec.exchange/tags/Phishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Phishing</span></a> <a href="https://infosec.exchange/tags/Google" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Google</span></a> <a href="https://infosec.exchange/tags/GoogleAds" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GoogleAds</span></a> <a href="https://infosec.exchange/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a> <a href="https://infosec.exchange/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://infosec.exchange/tags/Google" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Google</span></a> <a href="https://infosec.exchange/tags/Cyberaware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cyberaware</span></a> <a href="https://infosec.exchange/tags/SMB" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SMB</span></a> <a href="https://infosec.exchange/tags/RiskManagement" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RiskManagement</span></a> <a href="https://infosec.exchange/tags/Tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Tech</span></a> <a href="https://infosec.exchange/tags/IT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IT</span></a> <a href="https://infosec.exchange/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a></p>
The New Oil<p><a href="https://mastodon.thenewoil.org/tags/Google" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Google</span></a> suspended 39.2 million malicious advertisers in 2024 thanks to <a href="https://mastodon.thenewoil.org/tags/AI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AI</span></a></p><p><a href="https://arstechnica.com/gadgets/2025/04/google-used-ai-to-block-three-times-more-fraudulent-advertisers-in-2024/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">arstechnica.com/gadgets/2025/0</span><span class="invisible">4/google-used-ai-to-block-three-times-more-fraudulent-advertisers-in-2024/</span></a></p><p><a href="https://mastodon.thenewoil.org/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> <a href="https://mastodon.thenewoil.org/tags/malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malvertising</span></a> <a href="https://mastodon.thenewoil.org/tags/scam" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>scam</span></a></p>
The New Oil<p>Fake <a href="https://mastodon.thenewoil.org/tags/Semrush" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Semrush</span></a> ads used to steal <a href="https://mastodon.thenewoil.org/tags/SEO" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SEO</span></a> professionals’ <a href="https://mastodon.thenewoil.org/tags/Google" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Google</span></a> accounts</p><p><a href="https://www.bleepingcomputer.com/news/security/fake-semrush-ads-used-to-steal-seo-professionals-google-accounts/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">bleepingcomputer.com/news/secu</span><span class="invisible">rity/fake-semrush-ads-used-to-steal-seo-professionals-google-accounts/</span></a></p><p><a href="https://mastodon.thenewoil.org/tags/malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malvertising</span></a> <a href="https://mastodon.thenewoil.org/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> <a href="https://mastodon.thenewoil.org/tags/advertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>advertising</span></a></p>
The New Oil<p>Dragon Hacks: Slay Browser Ads</p><p><a href="https://firewallsdontstopdragons.com/dragon-hacks-slay-browser-ads/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">firewallsdontstopdragons.com/d</span><span class="invisible">ragon-hacks-slay-browser-ads/</span></a></p><p><a href="https://mastodon.thenewoil.org/tags/advertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>advertising</span></a> <a href="https://mastodon.thenewoil.org/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> <a href="https://mastodon.thenewoil.org/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> <a href="https://mastodon.thenewoil.org/tags/malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malvertising</span></a> <a href="https://mastodon.thenewoil.org/tags/AdBlocking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AdBlocking</span></a> <a href="https://mastodon.thenewoil.org/tags/AdBlocker" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AdBlocker</span></a></p>
The New Oil<p><a href="https://mastodon.thenewoil.org/tags/Microsoft" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Microsoft</span></a> says <a href="https://mastodon.thenewoil.org/tags/malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malvertising</span></a> campaign impacted 1 million PCs</p><p><a href="https://www.bleepingcomputer.com/news/security/microsoft-says-malvertising-campaign-impacted-1-million-pcs/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">bleepingcomputer.com/news/secu</span><span class="invisible">rity/microsoft-says-malvertising-campaign-impacted-1-million-pcs/</span></a></p><p><a href="https://mastodon.thenewoil.org/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a></p>
OTX Bot<p>Cascading Redirects: Unmasking a Multi-Site JavaScript Malware Campaign</p><p>A recent investigation uncovered a malicious JavaScript injection affecting WordPress websites, redirecting visitors to unwanted third-party domains. The attack vector involves a two-stage redirection process, injecting code into theme files and loading external scripts. The malware creates hidden elements to force redirects, potentially leading to phishing pages, malvertising, exploit kits, or scam sites. At least 31 infected websites were identified, with domains like awards2today[.]top and chilsihooveek[.]net involved. The infection methods include compromised admin accounts, exploited vulnerabilities, inadequate file permissions, and hidden PHP backdoors. Impacts include traffic loss, reputation damage, SEO blacklisting, and risks of further infections. Detection involves inspecting network activity and file modifications, while prevention measures include regular security audits, updates, strong passwords, and web application firewalls.</p><p>Pulse ID: 67ca751fcb0a0f73661e1ad4<br>Pulse Link: <a href="https://otx.alienvault.com/pulse/67ca751fcb0a0f73661e1ad4" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">otx.alienvault.com/pulse/67ca7</span><span class="invisible">51fcb0a0f73661e1ad4</span></a> <br>Pulse Author: AlienVault<br>Created: 2025-03-07 04:25:03</p><p>Be advised, this data is unverified and should be considered preliminary. Always do further verification.</p><p><a href="https://social.raytec.co/tags/BackDoor" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BackDoor</span></a> <a href="https://social.raytec.co/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://social.raytec.co/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://social.raytec.co/tags/Java" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Java</span></a> <a href="https://social.raytec.co/tags/JavaScript" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>JavaScript</span></a> <a href="https://social.raytec.co/tags/Malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malvertising</span></a> <a href="https://social.raytec.co/tags/Malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malware</span></a> <a href="https://social.raytec.co/tags/OTX" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OTX</span></a> <a href="https://social.raytec.co/tags/OpenThreatExchange" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenThreatExchange</span></a> <a href="https://social.raytec.co/tags/PHP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PHP</span></a> <a href="https://social.raytec.co/tags/Password" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Password</span></a> <a href="https://social.raytec.co/tags/Passwords" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Passwords</span></a> <a href="https://social.raytec.co/tags/Phishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Phishing</span></a> <a href="https://social.raytec.co/tags/RCE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RCE</span></a> <a href="https://social.raytec.co/tags/RDP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RDP</span></a> <a href="https://social.raytec.co/tags/Word" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Word</span></a> <a href="https://social.raytec.co/tags/Wordpress" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Wordpress</span></a> <a href="https://social.raytec.co/tags/bot" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bot</span></a> <a href="https://social.raytec.co/tags/AlienVault" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AlienVault</span></a></p>
LavX News<p>Microsoft Uncovers Malvertising Campaign Affecting 1 Million PCs: A Deep Dive into the Attack</p><p>A recent report from Microsoft reveals a sophisticated malvertising campaign that has compromised nearly one million devices globally. This article explores the technical intricacies of the attack, it...</p><p><a href="https://news.lavx.hu/article/microsoft-uncovers-malvertising-campaign-affecting-1-million-pcs-a-deep-dive-into-the-attack" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://</span><span class="ellipsis">news.lavx.hu/article/microsoft</span><span class="invisible">-uncovers-malvertising-campaign-affecting-1-million-pcs-a-deep-dive-into-the-attack</span></a></p><p><a href="https://mastodon.cloud/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://mastodon.cloud/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://mastodon.cloud/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cybersecurity</span></a> <a href="https://mastodon.cloud/tags/Malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malvertising</span></a> <a href="https://mastodon.cloud/tags/NetSupportRAT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NetSupportRAT</span></a></p>
ITSEC News<p>Smashing Security podcast #407: HP’s hold music, and human trafficking - Journey with us to Myanmar's shadowy scam factories, where trafficked workers are forced ... <a href="https://grahamcluley.com/smashing-security-podcast-407/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">grahamcluley.com/smashing-secu</span><span class="invisible">rity-podcast-407/</span></a> <a href="https://schleuss.online/tags/technicalsupportscam" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>technicalsupportscam</span></a> <a href="https://schleuss.online/tags/romancebaiting" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>romancebaiting</span></a> <a href="https://schleuss.online/tags/malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malvertising</span></a> <a href="https://schleuss.online/tags/law%E2%84%B4" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>lawℴ</span></a> <a href="https://schleuss.online/tags/malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malware</span></a> <a href="https://schleuss.online/tags/podcast" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>podcast</span></a> <a href="https://schleuss.online/tags/myanmar" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>myanmar</span></a> <a href="https://schleuss.online/tags/printer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>printer</span></a> <a href="https://schleuss.online/tags/scam" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>scam</span></a> <a href="https://schleuss.online/tags/hp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>hp</span></a></p>
hisold<p><span class="h-card" translate="no"><a href="https://social.bund.de/@bsi" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>bsi</span></a></span> Das <a href="https://toot.io/tags/BSI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BSI</span></a> empfiehlt die Nutzung eines Adblockers. Besser wird es nicht mehr. Gut das ihr <a href="https://toot.io/tags/Malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malvertising</span></a> ernst nehmt.</p>
Infoblox Threat Intel<p>Have you ever wondered what happens if you say yes to every request to receive push notifications from sketchy websites? <br>For the past few months we have done exactly that, exposing an old phone to an endless barrage of scareware and malicious ads. <br>Find out more here: <a href="https://blogs.infoblox.com/threat-intelligence/pushed-down-the-rabbit-hole/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">blogs.infoblox.com/threat-inte</span><span class="invisible">lligence/pushed-down-the-rabbit-hole/</span></a><br> <br><a href="https://infosec.exchange/tags/dns" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>dns</span></a> <a href="https://infosec.exchange/tags/threatintel" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>threatintel</span></a> <a href="https://infosec.exchange/tags/adtech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>adtech</span></a> <a href="https://infosec.exchange/tags/adware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>adware</span></a> <a href="https://infosec.exchange/tags/malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malware</span></a> <a href="https://infosec.exchange/tags/scam" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>scam</span></a> <a href="https://infosec.exchange/tags/phishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>phishing</span></a> <a href="https://infosec.exchange/tags/cybercrime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybercrime</span></a> <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/vextrio" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vextrio</span></a> <a href="https://infosec.exchange/tags/infoblox" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infoblox</span></a> <a href="https://infosec.exchange/tags/infobloxthreatintel" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infobloxthreatintel</span></a> <a href="https://infosec.exchange/tags/malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malvertising</span></a> <a href="https://infosec.exchange/tags/tds" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tds</span></a></p>
Renée Burton<p>Cricket and Matt asked me to join them for the Ask Mr DNS podcast last week. It's a great show that i've listened to for years. </p><p>We talked about securing networks by blocking bad things in DNS and how our research group <span class="h-card" translate="no"><a href="https://infosec.exchange/@InfobloxThreatIntel" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>InfobloxThreatIntel</span></a></span> does that work. I talk a bit about malicious adtech like <a href="https://infosec.exchange/tags/VexTrio" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>VexTrio</span></a> .... </p><p>This whole show is completely unrehearsed and i had no real idea what we were going to cover lol... so fingers crossed it makes sense to folks. </p><p>There are some great episodes about the Dyn attacks in 2015 that you should listen to if you have an interest in DDOS attacks. </p><p><a href="https://infosec.exchange/tags/threatintel" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>threatintel</span></a> <a href="https://infosec.exchange/tags/dns" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>dns</span></a> <a href="https://infosec.exchange/tags/cybercrime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybercrime</span></a> <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/infoblox" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infoblox</span></a> <a href="https://infosec.exchange/tags/phishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>phishing</span></a> <a href="https://infosec.exchange/tags/malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malware</span></a> <a href="https://infosec.exchange/tags/malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malvertising</span></a> </p><p><a href="https://ask-mrdns.com/2025/01/episode-64/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">ask-mrdns.com/2025/01/episode-</span><span class="invisible">64/</span></a></p>
LavX News<p>Malicious Google Ads Exploit Homebrew to Distribute AmosStealer Malware</p><p>A recent surge in malicious Google ads has targeted Homebrew users, redirecting them to a fake website that installs the notorious AmosStealer malware. This campaign highlights the persistent vulnerab...</p><p><a href="https://news.lavx.hu/article/malicious-google-ads-exploit-homebrew-to-distribute-amosstealer-malware" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://</span><span class="ellipsis">news.lavx.hu/article/malicious</span><span class="invisible">-google-ads-exploit-homebrew-to-distribute-amosstealer-malware</span></a></p><p><a href="https://mastodon.cloud/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://mastodon.cloud/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://mastodon.cloud/tags/Malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malvertising</span></a> <a href="https://mastodon.cloud/tags/AmosStealer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AmosStealer</span></a> <a href="https://mastodon.cloud/tags/Homebrew" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Homebrew</span></a></p>
probablysecurity<p>"The great Google Ads heist: criminals ransack advertiser accounts via fake Google ads" by Malwarebytes</p><p><a href="https://infosec.exchange/tags/probablysecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>probablysecurity</span></a> <a href="https://infosec.exchange/tags/malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malvertising</span></a></p><p><a href="https://www.malwarebytes.com/blog/news/2025/01/the-great-google-ads-heist-criminals-ransack-advertiser-accounts-via-fake-google-ads" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">malwarebytes.com/blog/news/202</span><span class="invisible">5/01/the-great-google-ads-heist-criminals-ransack-advertiser-accounts-via-fake-google-ads</span></a></p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://agora.echelon.pl/users/kravietz" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>kravietz</span></a></span> <a href="https://agora.echelon.pl/objects/310d887d-e111-48a4-9331-bc9e6b8cdd3b" rel="nofollow noopener noreferrer" target="_blank"><em>this</em></a> is why it's important to actually type in <a href="https://infosec.space/tags/URL" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>URL</span></a>|s and <em>not</em> use <a href="https://infosec.space/tags/Google" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Google</span></a> for <a href="https://infosec.space/tags/Search" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Search</span></a>!</p><p><a href="https://infosec.space/tags/Malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malvertising</span></a> <a href="https://infosec.space/tags/Malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malware</span></a> <a href="https://infosec.space/tags/Advertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Advertising</span></a></p>
LavX News<p>Phishing at Scale: Hackers Exploit Google Ads to Steal Accounts</p><p>In a shocking twist of irony, cybercriminals are leveraging Google Search ads to launch sophisticated phishing attacks that target Google Ads accounts. This unprecedented malvertising operation not on...</p><p><a href="https://news.lavx.hu/article/phishing-at-scale-hackers-exploit-google-ads-to-steal-accounts" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://</span><span class="ellipsis">news.lavx.hu/article/phishing-</span><span class="invisible">at-scale-hackers-exploit-google-ads-to-steal-accounts</span></a></p><p><a href="https://mastodon.cloud/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://mastodon.cloud/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://mastodon.cloud/tags/Phishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Phishing</span></a> <a href="https://mastodon.cloud/tags/Malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malvertising</span></a> <a href="https://mastodon.cloud/tags/GoogleAds" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GoogleAds</span></a></p>
LavX News<p>The Great Google Ads Heist: How Cybercriminals Are Phishing Advertisers</p><p>In a shocking twist of irony, cybercriminals are targeting Google Ads advertisers by masquerading as the very platform they're trying to access. This intricate scheme not only compromises accounts but...</p><p><a href="https://news.lavx.hu/article/the-great-google-ads-heist-how-cybercriminals-are-phishing-advertisers" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://</span><span class="ellipsis">news.lavx.hu/article/the-great</span><span class="invisible">-google-ads-heist-how-cybercriminals-are-phishing-advertisers</span></a></p><p><a href="https://mastodon.cloud/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://mastodon.cloud/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://mastodon.cloud/tags/CybersecurityThreats" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CybersecurityThreats</span></a> <a href="https://mastodon.cloud/tags/Malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malvertising</span></a> <a href="https://mastodon.cloud/tags/GoogleAdsPhishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GoogleAdsPhishing</span></a></p>
Steven Heywood<p>“They invest billions in cybersecurity in their other businesses but not when it comes to advertising and it becomes very strange for me as a customer.”</p><p><a href="https://mastodonapp.uk/tags/Google" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Google</span></a><br><a href="https://mastodonapp.uk/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a><br><a href="https://mastodonapp.uk/tags/Malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malvertising</span></a></p><p><a href="https://www.csoonline.com/article/3801734/hotel-chain-ditches-google-search-for-duckduckgo-subjected-to-fraud-attempts-daily.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">csoonline.com/article/3801734/</span><span class="invisible">hotel-chain-ditches-google-search-for-duckduckgo-subjected-to-fraud-attempts-daily.html</span></a></p>
LavX News<p>Ad Blocking: The Unsung Hero of Cybersecurity and Privacy</p><p>In a digital landscape overflowing with advertisements, blocking ads emerges as a powerful yet simple tool for enhancing online privacy and security. As malvertising and invasive real-time bidding pra...</p><p><a href="https://news.lavx.hu/article/ad-blocking-the-unsung-hero-of-cybersecurity-and-privacy" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://</span><span class="ellipsis">news.lavx.hu/article/ad-blocki</span><span class="invisible">ng-the-unsung-hero-of-cybersecurity-and-privacy</span></a></p><p><a href="https://mastodon.cloud/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://mastodon.cloud/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://mastodon.cloud/tags/PrivacyProtection" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PrivacyProtection</span></a> <a href="https://mastodon.cloud/tags/Malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malvertising</span></a> <a href="https://mastodon.cloud/tags/AdBlocking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AdBlocking</span></a></p>
geeknik<p>Google, asleep at the wheel? Malvertising plague festers. Graphic design pros targeted in ongoing campaign. Two IP addresses, a hundred domains, same malware. Beginner-level pivot exposes Google's ad oversight failure. <a href="https://infosec.exchange/tags/Cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cybersecurity</span></a> <a href="https://infosec.exchange/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://infosec.exchange/tags/Malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Malvertising</span></a> Click now, before it's your network next. This is just the tip of the iceberg.</p><p><a href="https://www.silentpush.com/blog/google-malvertising-campaign/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">silentpush.com/blog/google-mal</span><span class="invisible">vertising-campaign/</span></a></p>
Infoblox Threat Intel<p>VexTrio User Experience 4/N </p><p><span class="h-card" translate="no"><a href="https://infosec.exchange/@knitcode" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>knitcode</span></a></span> decided it was time to get crypto-scammed by VexTrio.....here's the story... </p><p>Unfortunately, when i got to the final scam to steal my funds i landed at a page that unavailable.. so my money wasn't stolen. I did capture 16 minutes of screen recording while they mined my device and tried to interact with their fake online users, so that was fun. Imgur won't let me load that long of a video so I've got screenshots to the highlights. </p><p>Here's how the scam works: <br>* Somehow you end up visiting a VexTrio crypto scam domain. Since we track their movements, I just collected one from our detectors. <br>* You get a "welcome back" with some amazing bitcoin balance.. mine was $113k! and a continue button... if you click that... <br>* You get a threatening "your account will be deleted in one day" for inactivity, but you have the option to log in now! excellent. click.<br>* but what about the password? No problem. the site has remembered your password for you. ;) <br>* When you login, you are asked if you want to withdraw your funds. Of course! <br>* It's been 364 days since you were here, so the site needs to "verify" each of your mining transactions. It takes about 10 minutes to do this while it seemingly mines your device. ;) <br>* users are "chatting" away talking about ethics and mining strategies. you can add comments but they won't answer you. <br>* Finally you get the chance to withdraw your funds... first you have to get approval from your account manager and fill out a withdrawal form. .. she doesn't have a record of you, but that's ok. you are approved to withdraw $113k. <br>* You need to give a credit card or paypal account in order to pay their "official" partner Binance to do the conversion. what is $64 fee for $113k? ! sign me up! <br>* Click the final button to pay Binance and receive your payout.... unfortunately, for me this is where I hit the oops can't display... after 16 minutes! peqemynite[.]top was not working. <br>* This domain was previously behind cloudflare caching but starting Nov 11th, it started resolving as Russian IP in Prospero (which interestingly shared IP with keitarotds[.]top) and then Unitel also Russia. So that's fun. <br>* To recap... VexTrio domain -&gt; cryptoscam -&gt; Binance fraud -&gt; Russian IP. </p><p>Attached are screenshots. i have a few urlscan images of this too but the process takes so long that getting the full user experience is hard. </p><p>here's some more IOCs. There are bunch of domains on: 91.212.166[.]95. I started at globalminingbit[.]top (after the TDS) and ended at peqemynite[.]top. Here's some current domains: qegymiewo[.]top,ditosoydi[.]top,keziryevo[.]top,xujodyaza[.]top,vupahoawy[.]top,rycozaaqi[.]top,zupahayja[.]top,mafaweewa[.]top,pesaraafy[.]top. <br>globalminingbit[.]top is also out of the CF cover now and at Proton66 (also Russia) 193.143.1(.)195</p><p><a href="https://infosec.exchange/tags/dns" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>dns</span></a> <a href="https://infosec.exchange/tags/threatintel" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>threatintel</span></a> <a href="https://infosec.exchange/tags/cybercrime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybercrime</span></a> <a href="https://infosec.exchange/tags/scam" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>scam</span></a> <a href="https://infosec.exchange/tags/malvertising" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malvertising</span></a> <a href="https://infosec.exchange/tags/infobloxthreatintel" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infobloxthreatintel</span></a> <a href="https://infosec.exchange/tags/infoblox" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infoblox</span></a> <a href="https://infosec.exchange/tags/vextrio" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>vextrio</span></a> <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/phishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>phishing</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/crypto" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>crypto</span></a> <a href="https://infosec.exchange/tags/cryptoscam" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cryptoscam</span></a></p>