Connect with us

Hi, what are you looking for?

HEADLINES

Game of Thrones final season: Episode 3 was top target for cyber-threats

The eighth and final season of Game of Thrones saw a spike in related cybercriminal activity, according to Kaspersky Lab researchers.

The premiere of each episode was accompanied by a long tail of attacks targeting users who were trying to download the newly released episode. Instead of getting the latest episode, fans received malware disguised behind the name of the show.

Some episodes proved significantly more toxic than others, with the third episode triggering the highest number of detected attempts to attack users, reaching 3,000 attacks a day at its peak.

Experts expect the release of the concluding episode to attract further attacks from scammers as malware distributors start offering potential viewers access to the complete season.

Advertisement. Scroll to continue reading.

Overall, after tracking associated malicious activity through the entire eighth season, Kaspersky lab researchers have found that the average daily number of attacks on users that involved malware disguised as an episode of Game of Thrones, was around 300-400. This number jumped to around 1,200 for the three to four days following the release of each new episode: a three to four-fold increase in malicious activity.

Another attack vector associated with Game of Thrones is streaming-websites that invite users to watch newly released Game of Thrones episodes for free, but which are actually designed to extract sensitive data from users.  

Typically, the online-player icon shows a scene from the TV show and redirects the victim to a registration page, later asking for bank card details with the CVC/CVV-code, claiming it is only for validation purposes.

Researchers have pointed out the similarities between this scheme and recent scams surrounding the latest Avengers movie.

“We see shared TTPs (tactics, techniques and procedures) across the phishing websites where scammers try to steal users’ details by promising a pirated movie before its official premiere. We believe there is a certain group of threat actors that methodically hunts fans of popular movies and TV productions, adjusting schemes dynamically according to pop-cultural happenings,” said Tatyana Sidorina, security researcher at Kaspersky Lab.

Advertisement. Scroll to continue reading.

To avoid falling victim to scammers:

• Avoid questionable websites, especially the ones that distribute pirated content.

• Don’t enter any information — especially credit card details — on a website you have no reason to trust.

• Do not use the same password for different web pages. Use a password manager instead.

• Use reliable antivirus software with protection from online scams and phishing.

Advertisement. Scroll to continue reading.

Advertisement
Advertisement
Advertisement

Like Us On Facebook

You May Also Like

HEADLINES

The Philippines’ global ranking for local threats rose from 76th to 66th, highlighting the need for stronger cybersecurity measures.

HEADLINES

Despite 65% having adopted generative artificial intelligence (GenAI capabilities), 89% of IT leaders are concerned that flaws in GenAI cybersecurity tools could put their...

APPS

PSBank is reinforcing its commitment to security through key enhancements to its PSBank Mobile app.

White Papers

Hyper-personalized attacks and agent AI subversion will require industry-wide effort to root out and address. Business leaders should remember that there’s no such thing...

HEADLINES

GCash, a financial super app and cashless ecosystem, reaffirmed its commitment to trust, security, and collaboration with customers, stakeholders, and law enforcement to ensure...

HEADLINES

Senator Mark Villar recently filed a resolution seeking a senate inquiry on the trade of International Mobile Subscriber Identity (IMSI) catchers, which allow fraudsters...

HEADLINES

Under the DSA, Globe and GoTyme may share with digital bank GoTyme information about mobile numbers potentially used by fraudsters, including names, addresses, and...

HEADLINES

In 2024, Converge blocked a record 183 billion entry attempts to  683,000 URLs / domains it has registered in its system as illegal sites....

Advertisement