New infostealer malware snaps webcam photos when you watch porn

midian182

Posts: 11,624   +176
Staff member
WTF?! It's an email scam as old as the Nigerian prince asking for money: someone claiming they hacked your webcam and have recorded you in an act of self-pleasure. Unless you pay up, the video will be sent to friends and family. The whole thing's a lie, of course, but a new type of malware has made this form of sextortion a reality.

Researchers at security firm Proofpoint write that since May this year, they have seen an increased use of an open-source infostealer malware called Stealerium. It's been available on GitHub since 2022 "for educational purposes."

Stealerium is spread using the traditional method of tricking victims into downloading the malware via fake emails. These often use the guise of payment demands, court summons, booking requests, etc., which have attachments in formats like ZIP, IMG, ISO, VBScript, JavaScript, or ACE files, or web links to malicious sites.

Once executed, Stealerium acts like any other infostealer: harvesting data such as browser credentials (usernames, passwords, cookies), payment card details, session tokens, and crypto wallet info.

What's different about this malware variant is that it also monitors a victim's browser for web addresses that included keywords such as "sex" and "porn," customizable by the attacker.

Once these terms are detected in an open browser tab, Stealerium simultaneously takes a screenshot of what's on screen and photographs the victim. The attacker then receives these images via their chosen exfiltration method.

The attacker is then left with a slew of sensitive data along with compromising photos of the victim. The next step is to contact the person and blackmail them using the threat of releasing the images.

Proofpoint found Stealerium in tens of thousands of emails sent by two different but relatively small-scale hacker groups, along with other email-based hacking campaigns.

Before Stealerium, some hackers would try to convince people they had caught them in the act via their webcam by sending images of their home gathered from Google maps and social media. They often name-dropped a popular malware strain to make the claim appear more legitimate. But a malware that automates webcams to take photos when it detects porn is "pretty much unheard of," said Proofpoint researcher Kyle Cucci, though there was a similar campaign that targeted French-speaking users in 2019, writes Wired.

Permalink to story:

 
Well, they'll never get to me. I don;t own a webcam or have mics connected to any of my machines.

Besides, I devote practically all of my online activity reading, "Opps we have a problem, check your browser console", or waiting for pages (tentatively), to load, right here at good old Techspot. "If at first you don't succeed, try, try, again". Words to live by. (y) (Y)
 
How is this different to terrorism, because I am sure there would have been suicides associated with this by now.
I was absolutely certain there would definitely and without a doubt be a bunch of suicides attributed to the Ashley Madison database release, but years later it seems like it's...maybe one or three? It's not certain if it's even one for sure.
So, if this particular malware is common maybe there's been a suicide, but I'm not sure I would bet on it.
 
Maybe the funniest article of the day!
Not really. There are very troubled people who are one step away from the edge. Push them lightly and they will do it.
Yeah, I know, the real problem lies elsewhere, but it is literally like pushing people toward suicide.
 
Back