Selected menu has been deleted. Please select the another existing nav menu.
=

Cert-In warns against malware campaign spreading through WhatsApp web

Lorem ipsum dolor sit amet consectetur. Facilisis eu sit commodo sit. Phasellus elit sit sit dolor risus faucibus vel aliquam. Fames mattis.

HTML tutorial

WhatsApp web and desktop users are being targeted by a large-scale malware distribution campaign that could give criminals unauthorised access and compromise their devices, national cybersecurity watchdog Cert-In said in a note.The Indian Computer Emergency Response Team has warned WhatsApp web and desktop users to be cautious of any attachments, even if they come from a friend, colleague or family member.”It has been observed that a large-scale malware distribution campaign is targeting WhatsApp Desktop and WhatsApp Web users. The campaign distributes malicious Visual Basic Script (VBScript) files through direct messages on the platform,” Cert-In said on June 25.The note prepared based on Kaspersky and Securelist findings said that the threat actors leverage compromised WhatsApp accounts to send malicious attachments directly to victims, making the messages appear legitimate and significantly increasing the likelihood of successful compromise.”WhatsApp is a cross-platform instant messaging application that enables users to exchange messages, files, images, videos and other content across desktop and web platforms. Attackers use previously compromised WhatsApp accounts to send malicious VBScript (vbs) files to existing contacts. Because the messages originate from trusted contacts, recipients may be more inclined to open the attachment,” Cert-In said.The successful execution of a malware attack can lead to remote access of the device by cybercriminals, stealing credentials to carry out fraudulent activities, deploy additional malware, infect the network from which the user is connected, disrupt business, resulting in financial losses.”Do not open attachments you were not expecting, even if they come from a friend, colleague, or family member,” Cert-In said.The cybersecurity watchdog has suggested that users make a phone call or send a message to the sender to cross-check if the person has intentionally sent the file.”If the sender’s message seems unusual or out of character, treat it as suspicious,” Cert-In said.On June 10, Cert-In also enhanced security compliance requirements for original equipment makers, which include companies that make mobile phones, computers, etc., following an increase in AI-based cyberattacks.

HTML tutorial

Tags :

Search

Popular Posts


Useful Links

Selected menu has been deleted. Please select the another existing nav menu.

Recent Posts

©2025 – All Right Reserved. Designed and Developed by JATTVIBE.