"Russian Hackers Using Fake Brand Sites to Spread DanaBot and StealC Malware"
"Russian Hackers Using Fake Brand Sites to Spread DanaBot and StealC Malware"
Researchers have discovered a sophisticated information stealer campaign that distributes "DanaBot" and "StealC" malware by impersonating legitimate brands. Russian-speaking cybercriminals, collectively codenamed "Tusk," are behind several sub-campaigns that exploit different platforms' reputation to trick users into downloading malware via fake websites and social media accounts. All of the sub-campaigns use Dropbox to host the initial downloader, which delivers additional malware samples to the victim's machine.