Hackers build fake desktop apps to trick victims into handing over access

https://cdn.mos.cms.futurecdn.net/wV66hEbpJdAc4iPB7RwtkK-2560-80.jpg
  • Threat actors spoofed major US HR/payroll platforms with fake desktop clients built via Lovable landing pages
  • Victims downloaded a modified ScreenConnect build from GitHub, giving attackers hidden, unattended remote access
  • Campaign shows ~291 downloads; likely targets payroll staff, enabling potential wire fraud through diverted payments

Cybercriminals are impersonating large American HR and payroll platforms in attacks that are very difficult to spot, new research from Allure has claimed.

Its report revealed how the as-yet unidentified threat actors were found spoofing three major US HR and payroll platforms, likely picked primarily because they offered a cloud-based service accessible through a browser, rather than a standalone desktop app.

The crooks used Lovable (a legitimate AI-powered service for building websitesand landing pages with nothing more than prompts, requiring no technical knowledge whatsoever) to create landing pages imitating the legitimate brands, but with a small (yet important) distinction - they offered a desktop...

Copyright of this story solely belongs to www.techradar.com. To see the full text click HERE

Read more