Trojan Makes Off With Thousands of Identities
Need a job? At some point, all of us will be in that very position. However, nobody will ever want their identity stolen, although that's just what's been happening on one of the web's most popular job posting sites.
InformationWeek recently reported the dirty doings of one particular advertising agency responsible for banners on the immensely popular and universal Monster.com. Uncovering the scam was security company SecureWorks, who discovered that one guilty party was responsible for thousands upon thousands of stolen identities. (Source: washingtonpost.com)
How'd they do it?
The thieving group responsible, although unnamed at this time, unsurprisingly used a Trojan virus tactic in order to victimize job seekers. According to SecureWorks, the culprits used variances of the Prg Trojan, also referred to as Ntos, Tcp Trojan, Infostealer.Monstres, Banker.aam, and Zeus.
InformationWeek's primary source on the matter is Don Jackson, a researcher with SecureWorks. Jackson states that his company unearthed some twelve massive data caches, the largest containing an astronomical 46,000 stolen identities. Other, smaller caches included between four and six thousand victims, making for an estimated total of some 100,000. (Source: indiatimes.com)
The swindled information is dangerous, too. Most of the data includes bank and credit card details, log-ins and passwords, and even social security numbers. Such a treasure trove of information was possible simply by making it so that when a website visitor clicks on an ad, a Trojan is immediately installed upon his or her computer. From that point on, each bit of data entered into a browser can be captured and stored on the hacker's remote server.
The identity theft ring, which reportedly first began collecting names in early May, uses a number of software holes to reach its victims. Although vendors claim to have patched these gaping security wounds, the thieves used flaws in Internet Explorer, WinZip, and even Apple's QuickTime.
Although it seems as if the scam has been put to a halt, there's no word on whether or not those stolen financial details led to missing dollars.
Swindling job seekers? Sounds like kicking someone when they're down, no?
Most popular articles
- Which Processor is Better: Intel or AMD? - Explained
- How to Prevent Ransomware in 2018 - 10 Steps
- 5 Best Anti Ransomware Software Free
- How to Fix: Computer / Network Infected with Ransomware (10 Steps)
- How to Fix: Your Computer is Infected, Call This Number (Scam)
- Scammed by Informatico Experts? Here's What to Do
- Scammed by Smart PC Experts? Here's What to Do
- Scammed by Right PC Experts? Here's What to Do
- Scammed by PC / Web Network Experts? Here's What to Do
- How to Fix: Windows Update Won't Update
- Explained: Do I need a VPN? Are VPNs Safe for Online Banking?
- Explained: VPN vs Proxy; What's the Difference?
- Explained: Difference Between VPN Server and VPN (Service)
- Forgot Password? How to: Reset Any Password: Windows Vista, 7, 8, 10
- How to: Use a Firewall to Block Full Screen Ads on Android
- Explained: Absolute Best way to Limit Data on Android
- Explained: Difference Between Dark Web, Deep Net, Darknet and More
- Explained: If I Reset Windows 10 will it Remove Malware?
My name is Dennis Faas and I am a senior systems administrator and IT technical analyst specializing in cyber crimes (sextortion / blackmail / tech support scams) with over 30 years experience; I also run this website! If you need technical assistance , I can help. Click here to email me now; optionally, you can review my resume here. You can also read how I can fix your computer over the Internet (also includes user reviews).
We are BBB Accredited
We are BBB accredited (A+ rating), celebrating 21 years of excellence! Click to view our rating on the BBB.