A cyber-security threat actor known as SocGholish has compromised a JavaScript code used by an unnamed media content provider. The malware is being used to spread the FakeUpdates malware to major media outlets across the United States.

More than 250 regional and national newspaper sites are affected by the malicious JavaScript. Some impacted media organizations include the cities of Boston, Chicago, Miami, and Washington, D.C.

The malware is disguised as a browser update. It is being distributed through advertising networks to hundreds of U.S. news websites. This campaign is particularly severe because it targets the common practice of keeping browsers up to date. Also, with the malware targeting news websites, it can reach a broad audience.

A security research team at Proofpoint Threat Research explained the malware is injected into a JavaScript file that loads on the news outlets’ website on a rotating basis to avoid detection. This prompts the website visitor to download a fake software update for their browser. Due to it rotating through the code, not all website visitors are affected.

What You Might See

When visiting a news site and after the advertising loads, an alert might appear that it is time to update your browser. The messages have been tailored to match the browser, whether you are using Google Chrome, Mozilla Firefox, or Opera. Unfortunately, if downloaded, the file contains malware instead of a security update.

The SocGholish malware serves as an initial access threat. Initial access threats are known to serve as a precursor to ransomware.

How To Prevent Being A Victim

It is easy to authenticate the update notification by navigating to browser settings. Check to see if there are any updates available within the browser controls. Hackers cannot insert their malware links into the browser code. On the other hand, alerts can be triggered by websites and website advertising.

By being aware of what you click on when visiting news websites, you can prevent being a victim of the SocGholish malware. Also, check your browser settings for updates before downloading anything that appears on your screen. Be vigilant when using the Internet since hackers constantly devise new ways to install malware onto unsuspecting victims’ computers.

 

 

Related Posts - TKS Blog

TKS Newsletter - 2024 December
Here's our December 2024 Newsletter Read the full PDF version here: The TKS Sentinel - December Issue In this month's edition, we discuss: Ransomware Threats PDF Hijacking ...
Read more
zero trust protections
Zero Trust Cybersecurity: Essential for Keeping Your Data Secure
As cyber threats become increasingly sophisticated, businesses can no longer rely solely on traditional methods to protect their data. Hackers are no longer trying to...
Read more
TKS Newsletter - 2024 November
Here's our November 2024 Newsletter Read the full PDF version here: The TKS Sentinel - November Issue In this month's edition, we discuss: Dark Web/Work Laptop ActiveX Controls ...
Read more
email security tips
Enhance Your Email Security in 6 Simple Steps
6 Simple Steps to Enhance Your Small Business Email Security Email is one of the most commonly used tools in business today—but it’s also a prime...
Read more

Used with permission from Article Aggregator