Euromedia24 on Play Store Euromedia24 on App Sore
BNB

$660.3

BTC

$108836

ADA

$0.584194

ETH

$2564.42

SOL

$151.04

28 °

Yerevan

30 °

Moscow

37 °

Dubai

20 °

London

31 °

Beijing

16 °

Brussels

21 °

Rome

24 °

Madrid

BNB

$660.3

BTC

$108836

ADA

$0.584194

ETH

$2564.42

SOL

$151.04

28 °

Yerevan

30 °

Moscow

37 °

Dubai

20 °

London

31 °

Beijing

16 °

Brussels

21 °

Rome

24 °

Madrid

Hackers attacked Russian companies in Telegram using avatars


Before the May holidays, Russian companies have started receiving messages at Telegram, offering to download "Vacation Avatar Package", which could have placed in their absence in Messengers. The attached file contains a RAR archive, which contains a malicious script that collects data from the device to send the attackers. About thisGazeta.ruAlexander Blzneckov, head of the Telecom Stock Exchange Department, said.

"We have registered a new phishing correspondence to employees of organizations that come from the alleged human resources. The report said that before the festive period, the company's designers have set up a special package of avatars, which can be installed in messengers, to inform your partners about your temporary disappearance, "Bleksnekov said.

Attackers attach the message to the RAR archive, which opens a script for searching for certain files on the victim, such as documents containing certain words in the headings, and send them to attackers. It's about mass postage. Employees of Russian companies, mostly IT, have received more than 300 such messages. According to BLEZNECT, Most of these viruses target Windows operating system.

"In the ideal scenario, the company's security should be built in such a way that any operation of employees, including files, is analyzed through the mechanisms of SOC (Security Action Center). The cyberwall monitoring center checks the security events entering the system from different sources, and when it notes suspicious activities, it takes measures to prevent attack, "Blueneckov said.

For example, if a malicious script is launched, an employee account is immediately blocked, and its computer is isolated from the corporate network and the Internet to be able to be transferred to the attackers. In addition, you can defile the macro operation of the workplaces in downloaded files.

Translation of: Euromedia24.com

News

Important
Not all of the 51 searched companies are a member of the Tashir Group of Companies. Karapetyan
Law enforcement arrested the main engineer of the ENA Musaler branch. lawyer
Von der Lion demands from Beijing to limit cooperation with Russia
Iran is going to submit evidence of the gross violations of human rights by Israel
It is a war in Armenia. Ivanishvili or Patarkatsili
Iran has not found evidence of the use of uranium rose consumed by Israel
Peskov. The West supports the continuation of hostilities, supplying weapons to Ki
Axios. Trump has promised Zelensky send 10 Patriot hunting rocket
A truck was stolen in gold and silver concentrate in Mexico
Peskov stated that Russia understands that Ukraine's arms supplies continue
The President of the Czech Republic said that Ukraine will not be able to return the lost territories
The country's "analog" was found in the universe
Fidan. Turkey has issued a US position on Iran on nuclear talks
Malaysia's Prime Minister stated about the biggest summit in Asian history in October
18 people have been arrested during protests in Serbia
Bloomberg. The BRICS summit was more organized than the G20
Iran denies Trump's claim that Tehran meets Washington
The 83-year-old citizen threatens to set himself on fire in front of the Yerevan Municipality
Kazakhstan promised to answer Trump customs duties
Netanyahu said that the Iranian people must decide the issue of a change of government in the country