CYBERSECURITY

Cybersecurity Researchers Flag Two New Malware Families

Cybersecurity Researchers Flag Two New Malware Families

The Rise of WordlistLoader

Cybersecurity researchers have identified two new malware families, WordlistLoader and SynkLoader, that are being used to deliver next-stage payloads and potentially sell access to ransomware groups. The discovery was made by Gen Digital, and the malware families are believed to be active as of now.

WordlistLoader is a malware family that is being used to deliver Amatera Stealer, also known as ACR Stealer. This stealer is a type of malware that is designed to steal sensitive information from infected computers. According to researchers, WordlistLoader is being delivered via ClickFix, a legitimate software that is used to fix Windows issues.

What's Behind the SynkLoader Phishing Attacks?

Researchers believe that the attackers are using ClickFix as a way to gain the trust of their victims. Once the malware is installed, it can deliver Amatera Stealer, which can then steal sensitive information such as login credentials and credit card numbers.

What is Amatera Stealer?

SynkLoader is another malware family that is being used to phish Windows passwords. This malware is designed to trick victims into entering their login credentials, which are then stolen by the attackers. Researchers believe that SynkLoader is being used to gain access to sensitive information and potentially sell it to ransomware groups.

The use of phishing attacks to steal login credentials is a common tactic used by cyber attackers. By tricking victims into entering their credentials, attackers can gain access to sensitive information and use it for malicious purposes.

How does WordlistLoader deliver Amatera Stealer?

Amatera Stealer, also known as ACR Stealer, is a type of malware that is designed to steal sensitive information from infected computers. It can steal login credentials, credit card numbers, and other sensitive information.

What is the purpose of SynkLoader?

WordlistLoader delivers Amatera Stealer via ClickFix, a legitimate software that is used to fix Windows issues. The attackers are using ClickFix as a way to gain the trust of their victims.

SynkLoader is a malware family that is designed to phish Windows passwords. It is used to trick victims into entering their login credentials, which are then stolen by the attackers. The stolen credentials can be used to gain access to sensitive information and potentially sell it to ransomware groups.

Content written by Daniel Cross for tech-site.news editorial team, AI-assisted.

Comments

Leave a comment