Google Chrome Faces Sophisticated New Malware; Targets WordPress & Language Pack
Regin OlimberioHackers are getting more and more sophisticated in gathering personal and sensitive information and Google is under attack. NeoSmart Technologies dissected a compromised WordPress site and found a smooth hack that uses simple tactics instead of traditional malware drive-by-infection attempts.
The report disclosed that hackers used JavaScript to disrupt typed words and make it appear as set of rubbish characters and incoherent symbols. In reality, the malware is simply conditioning the mind of users that there is a need to download a language pack.
If the text doesn't render, would-be victims will be forced to download the "HoeflerText" pack. Since HoeflerText is a real font anyway, many can be deceived into downloading and installing the malware.
Hackers are also deploying a clean-looking format and correct Google Chrome logo. While previous malwares can be easily spotted due to faulty grammar and spelling, this one can easily pass as legitimate update, Deccan Chronicle reported.
Here is another cue, the malware will try to download a file named "Chrome Font v7.5.1." Subsequently, Google will fail to detect the download as malicious but will notify users that "this file isn't downloaded very often." Lastly, remember that the malware will pose as a signed executable file although it is in reality, not a legit file. Gathering all these tips might prove helpful since the file is not yet in Google's browsing blacklist.
While a decent anti-malware app can be useful, the report said that nothing beats a discerning eye. NeoSmart warned that the malware is so sophisticatedly made that only nine of handful anti-virus apps managed to detect it. This new breed of malware even came past Windows Defender and Google's native protection.
NeoSmart admitted that it is still unknown what sort of data can this malware extract. The damage and other subsequent effects are also unknown but users are warned against Google that asks for language pack update. There is a high possibility of getting affected when downloading new apps or software too.
most read
related stories
more stories from News
Discover TCL CSOT's groundbreaking debut at SID 2024: the world's first tri-foldable smartphone, featuring a spacious 7.85-inch screen. Explore its innovative design, enhanced display technology, and its impact on the future of mobile computing
ernest hamiltonDiscover how the Xiaomi 14 Ultra outperformed the Samsung Galaxy S24 Ultra and iPhone 15 Pro Max in PhoneArena's rigorous camera tests, excelling in detail and zoom capabilities while setting new standards for smartphone photography.
ernest hamiltonDiscover the groundbreaking achievement as Japan unveils the world's first 6G prototype device, promising unprecedented speeds and revolutionizing wireless communication.
ernest hamiltonDiscover the key features and security enhancements of Apple's iOS 17.5 update.
ernest hamiltonDiscover top iPhone apps that let you earn real money by playing games, scanning receipts, and staying active.
ernest hamiltonSamsung has reached a remarkable milestone, shipping nearly 3 billion smartphones since 2014. Discover how the tech giant's decade-long dominance and innovative advancements have solidified its leadership in the global smartphone market.
ernest hamiltonLearn about Apple's settlement in the class-action lawsuit over iPhone 7 audio issues, offering up to $349 compensation for eligible users. Dive into the details and implications of this landmark agreement.
ernest hamiltonThousands of Apple users experienced a major iMessage outage on Thursday evening, impacting communication across the U.S., Canada, and the U.K. Downdetector reported over 13,000 disruptions starting at 6 p.m. ET. Stay updated with the latest developments and potential fixes.
ernest hamilton