Hackers are using TikTok videos offering 'free Spotify Premium' to spread malware and steal passwords

https://cdn.mos.cms.futurecdn.net/fg7bgy65pWhFo4Qzib58yX-2560-80.jpg
  • TikTok and Instagram Reels now being used to target victims
  • "Free" Spotify, Microsoft, Adobe subscriptions targeting cash-strapped users
  • Social engineering is still the top vector, but basic account security measures do a lot of the heavy lifting

A new report from ReversingLabs is warning doomscrollers of videos spreading across short-form platforms like TikTok and Instagram Reels infecting users with password-stealing malware.

The videos typically promise free access to subscriptions like Spotify Premium, Windows, Office and Adobe – an instant, telltale sign that things might not be as they seem.

Instead of receiving phishing emails, victims are instructed to open command-line tools like PowerShell, then paste and run the command shown in the video.

Watch out for this info stealing malware

When they run the command, it triggers a piece of malware to be downloaded and installed to a victim's computer. Vidar, the infostealer, targets usernames, passwords, cookies, session tokens, cryptocurrency...

Copyright of this story solely belongs to techradar.com. To see the full text click HERE