Hackers are hiding powerful info-stealing malware in fake free VPNs downloaded from GitHub, don’t get tricked




  • GitHub repositories host malware disguised as tools that gamers, and privacy-seekers are likely to download
  • The fake VPN campaign drops malware straight into AppData and hides it from plain view
  • Process injection through MSBuild.exe allows this malware to operate without triggering obvious alarms

Security experts have warned of an emerging new cyber threat involving fake VPN software hosted on GitHub.

A report from Cyfirma outlines how malware disguises itself as a “Free VPN for PC” and lures users into downloading what is, in fact, a sophisticated dropper for the Lumma Stealer.



Source link

Leave a Reply

Your email address will not be published. Required fields are marked *