Ausnahme gefangen: SSL certificate problem: certificate is not yet valid ๐Ÿ“Œ Some 'Reopen' Domains Could Be Phishing and Malware Campaigns

๐Ÿ  Team IT Security News

TSecurity.de ist eine Online-Plattform, die sich auf die Bereitstellung von Informationen,alle 15 Minuten neuste Nachrichten, Bildungsressourcen und Dienstleistungen rund um das Thema IT-Sicherheit spezialisiert hat.
Ob es sich um aktuelle Nachrichten, Fachartikel, Blogbeitrรคge, Webinare, Tutorials, oder Tipps & Tricks handelt, TSecurity.de bietet seinen Nutzern einen umfassenden รœberblick รผber die wichtigsten Aspekte der IT-Sicherheit in einer sich stรคndig verรคndernden digitalen Welt.

16.12.2023 - TIP: Wer den Cookie Consent Banner akzeptiert, kann z.B. von Englisch nach Deutsch รผbersetzen, erst Englisch auswรคhlen dann wieder Deutsch!

Google Android Playstore Download Button fรผr Team IT Security



๐Ÿ“š Some 'Reopen' Domains Could Be Phishing and Malware Campaigns


๐Ÿ’ก Newskategorie: IT Security Nachrichten
๐Ÿ”— Quelle: tech.slashdot.org

CNET reports on new research from a threat-intelligence company into the more than 540 domain names registered this month with the word "reopen" in their URL. While hundreds of them are "designed to lend credibility to anti-lockdown protests," and 98 more were purchased to thwart that effort, there's still many other domains that "come from suspicious sources or resellers looking to make money... Researchers at DomainTools have found hundreds of 'reopen' URLs that were bought specifically to be resold and others that resemble malware campaigns." These are "reopen" websites targeted toward restaurants, movie theaters and sports, and all are set up for sale... "Domainers are a particular type of people who spot any chance they can to hop on a quick buck," said Chad Anderson, senior security researcher at DomainTools. "In any of these instances, there's going to be people who try and pick domains they are able to sell for $5,000 that they bought for $10 because someone wants to start a movement." DomainTools' researchers also found a batch of links registered in bulk specifically with typos for the phrase "Reopen American Business." All of these domains were registered in China and have misspellings, indicating they're set up to be phishing pages... The idea is to trick visitors who make typos into entering their sensitive credentials on these fraudulent pages. These domains all have servers registered with Bodis, an advertising service that monetizes domain names and has links to a previous malware campaign from the advanced persistent threat (APT) group DarkHotel. APTs are known groups behind cyberattacks. DarkHotel APT is a hacking group that primarily affects victims in Japan, Taiwan, China, Russia and South Korea. "It looks like it's going to be used for phishing campaigns," Anderson said. "It hasn't been fully activated yet, but it has characteristics of a DarkHotel APT group." There's also an interesting detail about the first seven "reopen" pages created, which looked like they represented independent groups but were all registered under the name of pro-gun activist Aaron Dorr from Iowa, and redirected visitors to the gun rights groups that were organizing protests to "liberate" their locked down cities. That activist's family also created "reopen" Facebook groups with hundreds of thousands of followers -- which then directed people to the websites. "NBC News found that many of the websites hosted by Dorr were designed to harvest visitors' data, including emails and home addresses." NBC adds that the group's usual method "is to attack established conservative groups from the right, including the National Rifle Association, and then make money by selling memberships in their groups or selling mailing lists of those who sign up, according to some conservative politicians and activists who have labeled the efforts as scams."

Read more of this story at Slashdot.

...



๐Ÿ“Œ Some 'Reopen' Domains Could Be Phishing and Malware Campaigns


๐Ÿ“ˆ 73.68 Punkte

๐Ÿ“Œ Microsoft to partially reopen its Redmond campus March 29 and possibly fully reopen on July 6


๐Ÿ“ˆ 46.16 Punkte

๐Ÿ“Œ How some presidential campaigns use DMARC to protect their domains from being spoofed


๐Ÿ“ˆ 32.34 Punkte

๐Ÿ“Œ How some presidential campaigns use DMARC to protect their domains from being spoofed


๐Ÿ“ˆ 32.34 Punkte

๐Ÿ“Œ Apple Plans to Reopen Some Stores in America This Week, But Customers Must Wear Masks


๐Ÿ“ˆ 29.86 Punkte

๐Ÿ“Œ Vast Majority of Phishing and Malware Campaigns Are Small-Scale and Short-Lived


๐Ÿ“ˆ 27.46 Punkte

๐Ÿ“Œ Microsoft 365 for Campaigns aims to secure election campaigns


๐Ÿ“ˆ 25.81 Punkte

๐Ÿ“Œ X fixes URL blunder that could enable convincing social media phishing campaigns


๐Ÿ“ˆ 25.67 Punkte

๐Ÿ“Œ Phishing-as-a-Service Platform Lets Anyone Launch Own Phishing Campaigns


๐Ÿ“ˆ 25.66 Punkte

๐Ÿ“Œ DEV-1101 AiTM phishing kit is fueling large-scale phishing campaigns


๐Ÿ“ˆ 25.66 Punkte

๐Ÿ“Œ .Science and .study: Domains of the bookish? More like domains of the JERKS!


๐Ÿ“ˆ 25.33 Punkte

๐Ÿ“Œ Zoho domains central to keylogger, data theft campaigns worldwide


๐Ÿ“ˆ 24.68 Punkte

๐Ÿ“Œ Xfinity, McAfee Brands Abused by Parked Domains in Active Campaigns


๐Ÿ“ˆ 24.68 Punkte

๐Ÿ“Œ "Reopen" domain name owners include a gun activist, a Good Samaritan, and potential spammers


๐Ÿ“ˆ 23.97 Punkte

๐Ÿ“Œ The provocative step would reopen a long-running feud between federal authorities and silicon valley.


๐Ÿ“ˆ 23.97 Punkte

๐Ÿ“Œ Opera 66 Makes it Easier for Users to Reopen Closed Tabs and Access Add-Ons


๐Ÿ“ˆ 23.97 Punkte

๐Ÿ“Œ Governors On East and West Coasts Form Pacts To Decide When To Reopen Economies


๐Ÿ“ˆ 23.97 Punkte

๐Ÿ“Œ AI Isn't Magical and Won't Help You Reopen Your Business


๐Ÿ“ˆ 23.97 Punkte

๐Ÿ“Œ A Problem With a Webpage Caused IE 11 to Close and Reopen Tabs [Fix]


๐Ÿ“ˆ 23.97 Punkte

๐Ÿ“Œ New Malware Families Discovered; Distributed Through Phishing Campaigns From The Necurs Botnet


๐Ÿ“ˆ 23.88 Punkte

๐Ÿ“Œ New Malware Families Discovered; Distributed Through Phishing Campaigns From The Necurs Botnet


๐Ÿ“ˆ 23.88 Punkte

๐Ÿ“Œ Phishers prefer Tesla, top 3 malware strains in Coronavirus phishing campaigns


๐Ÿ“ˆ 23.88 Punkte

๐Ÿ“Œ .new: Google gibt Domains zum Erstellen neuer Inhalte zur Registrierung frei โ€“ das sind die ersten Domains


๐Ÿ“ˆ 23.54 Punkte

๐Ÿ“Œ Anzeige | Domains registrieren: So kommst du an deine Wunsch-Domains


๐Ÿ“ˆ 23.54 Punkte

๐Ÿ“Œ Anzeige | Domains registrieren: So kommst du an deine Wunsch-Domains


๐Ÿ“ˆ 23.54 Punkte

๐Ÿ“Œ Anzeige | Domains registrieren: So kommst du an deine Wunsch-Domains


๐Ÿ“ˆ 23.54 Punkte

๐Ÿ“Œ Feds seize two domains used by SolarWinds intruders for malware spear-phishing op


๐Ÿ“ˆ 22.75 Punkte

๐Ÿ“Œ Chinese Hackers Using 42,000 Phishing Domains To Drop Malware On Victims Systems


๐Ÿ“ˆ 22.75 Punkte

๐Ÿ“Œ reopen last opened programs on reboot


๐Ÿ“ˆ 22.19 Punkte

๐Ÿ“Œ Sweden to reopen Julian Assange rape case


๐Ÿ“ˆ 22.19 Punkte

๐Ÿ“Œ Federal vs. State Powers in Rush to Reopen Amid Coronavirus Pandemic


๐Ÿ“ˆ 22.19 Punkte











matomo