Infostealer malware campaign plagues Facebook users

Share post:

According to CybelAngel, over 40,000 Facebook users have been victims of a malicious software campaign that has entered their accounts and stolen both personal and professional data.

The perpetrator of the campaign is a bogus ChatGPT program that has stolen user passwords and bypassed two-factor authentication, allowing hackers to gain access to and control of Facebook accounts.

As a result of the assault, many users have lost access to their accounts and have lost decades of memories. The story has gone viral on TikTok under the hashtag #LilyCollinsHack, with individuals expressing their outrage and shock at having their Facebook accounts hijacked.

The installation of a bogus ChatGPT application, either a Windows software or a Chrome extension, was a common thread among these individuals, according to CybelAngel’s investigation. The Chrome extension in particular purported to be a genuine ChatGPT software, however it was quickly removed from the Chrome store. Many individuals, unfortunately, had already done so.

According to additional investigation, the stolen data dates back to March 2023, with the stolen Facebook accounts accounting for just 1% of the total stolen information. Access to at least 6,000 business accounts and 7,000 VPNs, as well as thousands of user accounts for a variety of services, are among the remaining data.

Cybersecurity experts are urging users to remain vigilant when downloading software or extensions, and to always verify the source of an app or extension before downloading it. They also advise regularly updating passwords and using strong, unique passwords for each account, enabling two-factor authentication wherever possible, being cautious when granting permissions to apps and extensions, and staying informed about the ever-evolving landscape of cyber threats.

The sources for this piece include an article in CybelAngel.

SUBSCRIBE NOW

Related articles

Cyber Security Today, May 6, 2024 – Ransomware gang claims responsibility for attacking Italian healthcare service, Russian gang blamed for attacks in Europe, and...

Ransomware gang claims responsibility for attacking Italian healthcare service, Russian gang blamed for attacks in Europe, and more. Welcome...

Microsoft reveals critical security flaw affecting Android apps

Microsoft has identified a serious vulnerability in Android apps that could allow malicious software to hijack legitimate apps...

Chinese government websites “Riddled with security flaws” say researchers

A recent study conducted by researchers from the Harbin Institute of Technology reveals significant security issues plaguing Chinese...

Cyber Security Today, May 3, 2024 – North Korea exploits weak email DMARC settings, and the latest Verizon analysis of thousands of data breaches

This episode reports on warnings about threats from China, Russia and North Korea, the hack of Dropbox Sign's infrastructure

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways