Kurzfassung
An 18 year old from Odesa, Ukraine, has been identified by Ukrainian cyberpolice (working with U.S. law enforcement) for running an infostealer operation that harvested credentials and session tokens from 28,000 victims between 2024 and...
Wie es funktioniert
An 18 year old from Odesa, Ukraine, has been identified by Ukrainian cyberpolice (working with U.S. law enforcement) for running an infostealer operation that harvested credentials and session tokens from 28,000 victims between 2024 and...
Warnzeichen
- : • Unexpected device slowdown or unusual network activity — signs your system may be compromised • Login notifications for accounts you didn't access, especially across multiple services • Charges or purchases on payment methods you didn't authorize ✅
Was tun
- 1Run a full system scan with a reputable anti malware solution and keep your security software updated
- 2Enable multi factor authentication (MFA) on all critical accounts — note that session tokens can bypass MFA, so also enable MFA push notifications
- 3Monitor bank and payment account statements regularly and revoke unfamiliar active sessions in your online account settings
Quelle
bleepingcomputer
Quelle geprueft vom Mythos Forensic Team
https://www.bleepingcomputer.com/news/security/ukraine-identifies-infostealer-operator-tied-to-28-000-stolen-accounts/FAQ
Ist Infostealer Malware Alert: Ukrainian Cyberpolice Bust Threat Actor Behind 28,000 Credential Thefts and $721K Fraud ein reales Betrugsmuster?
Ja. Behandeln Sie Nachricht, Anruf oder Zahlungsaufforderung als verdaechtig, bis ein offizieller Kanal sie bestaetigt.
Was sind die ersten Warnzeichen?
: • Unexpected device slowdown or unusual network activity — signs your system may be compromised • Login notifications for accounts you didn't access, especially across multiple services • Charges or purchases on payment methods you didn't authorize ✅
Was sollte ich zuerst tun?
Run a full system scan with a reputable anti malware solution and keep your security software updated; Enable multi factor authentication (MFA) on all critical accounts — note that session tokens can bypass MFA, so also enable MFA push notifications; Monitor bank and payment account statements regularly and revoke unfamiliar active sessions in your online account settings
Kann LegalAudit meinen Fall pruefen?
Ja. Starten Sie den kostenlosen Chat und fuegen Sie Nachricht, Link, Absender oder Zahlungsdaten ein.