Hackers are using TikTok videos offering 'free Spotify Premium' to spread malware and steal passwords
- TikTok and Instagram Reels now being used to target victims
- "Free" Spotify, Microsoft, Adobe subscriptions targeting cash-strapped users
- Social engineering is still the top vector, but basic account security measures do a lot of the heavy lifting
A new report from ReversingLabs is warning doomscrollers of videos spreading across short-form platforms like TikTok and Instagram Reels infecting users with password-stealing malware.
The videos typically promise free access to subscriptions like Spotify Premium, Windows, Office and Adobe – an instant, telltale sign that things might not be as they seem.
Instead of receiving phishing emails, victims are instructed to open command-line tools like PowerShell, then paste and run the command shown in the video.
Watch out for this info stealing malware
When they run the command, it triggers a piece of malware to be downloaded and installed to a victim's computer. Vidar, the infostealer, targets usernames, passwords, cookies, session tokens, cryptocurrency...
Copyright of this story solely belongs to techradar.com. To see the full text click HERE