Ransomware gang targets Windows admins via PuTTy, WinSCP malvertising

https://www.bleepingcomputer.com/news/security/ransomware-gang-targets-windows-admins-via-putty-winscp-malvertising/

A ransomware operation targets Windows system administrators by taking out Google ads to promote fake download sites for Putty and WinSCP.

63 points · 8 comments · view on lemmy.world

8 Comments

Telorand@reddthat.com · 12 pts · 2y (3 replies)

Wait, are system admins the types to click on ads? I thought one of the most important rules of the internet was "never click on ads." Seems like the wrong place to go phishing.

Evotech@lemmy.world · 4 pts · 2y

System admins are just people

Fuck_u_spez_@sh.itjust.works · 4 pts · 2y

Devil's advocate: it would be worth the risk of wasted time to an attacker when the payoff is potentially gaining admin access to one or two high-value systems.

General_Shenanigans@lemmy.world · 2 pts · 2y

“My boss says I need something called ‘Wind Skip.’ I don’t know what it’s for; I have a PDF here with instructions. He says we can just download it and run it, but I couldn’t find it. Can you install it for me?”

01189998819991197253@infosec.pub · 7 pts · 2y

Search engine advertisements have become a massive problem over the past couple of years, with numerous threat actors utilizing them to push malware and phishing sites.

It's a good thing that Google is fighting so hard to block the use of adblockers, since the shareholders' profits are so much more important than the safety of everyone else.

kemsat@lemmy.world · 5 pts · 2y

I’m feeling more & more glad I finally switched to Linux.

crazyminner@lemmy.ml · 3 pts · 2y (1 reply)

Another benefit to using Ninite.

loki@lemmy.ml · 2 pts · 2y

Scoop for me. 1 more layer of audit, 1 additional layer of trust. There are occasional hiccups but they haven't broken my trust yet.