TechFake CAPTCHA scam fools users into installing dangerous malware

Fake CAPTCHA scam fools users into installing dangerous malware

A new phishing technique involving the mimicry of CAPTCHA user verification systems has emerged. Scammers prompt users to perform simple key combinations, leading unsuspecting individuals to install malware on their computers inadvertently.

Watch out for a new type of phishing.
Watch out for a new type of phishing.
Images source: © Pixabay, sekurak, Dobreprogramy

10:07 AM EDT, September 13, 2024

This scam impersonates the familiar CAPTCHA system. A user may land on a page where a familiar window asks for confirmation that the user is human. In legitimate instances, a single button labeled "I'm not a robot," a puzzle piece that needs to be matched with an image, or selecting pictures that do not match the others are typically encountered. However, this scenario is different.

The fake CAPTCHA system suggests that user confirmation will be possible after following a simple instruction: pressing the combinations Win+R, Win+V, and the Enter key in sequence. In practice, this sequence launches a malicious script placed in the system clipboard, unknowingly activated by the victim. The web browser does not alert users that malicious code has entered the clipboard. As a result, fake software is downloaded to the computer.

After running the script, one can expect the download of an infostealer, although the forms of the attack may vary depending on the specific case. The outcome is the same—the user remains unaware of malware operating on their computer, which can steal files, data, or read screen contents. This can lead to email, social media, or online banking login information theft.

Related content
© essanews.com
·

Downloading, reproduction, storage, or any other use of content available on this website—regardless of its nature and form of expression (in particular, but not limited to verbal, verbal-musical, musical, audiovisual, audio, textual, graphic, and the data and information contained therein, databases and the data contained therein) and its form (e.g., literary, journalistic, scientific, cartographic, computer programs, visual arts, photographic)—requires prior and explicit consent from Wirtualna Polska Media Spółka Akcyjna, headquartered in Warsaw, the owner of this website, regardless of the method of exploration and the technique used (manual or automated, including the use of machine learning or artificial intelligence programs). The above restriction does not apply solely to facilitate their search by internet search engines and uses within contractual relations or permitted use as specified by applicable law.Detailed information regarding this notice can be found  here.