A series of fake Google ads leading to fake typosquatting domains, pretending to be for popular IT support tools and apps have been reported by BleepingComputer.
Fake Zenmap. WinMRT sites target IT staff with Bumblebee malware
Many of these tools require administrator access to networks and devices to function, so any poisoning of these tools with malware would be a serious cyber security issue.
The threat actors obviously chose to attack these particular tools because of the privileged access IT support have to have to do their jobs. Any carelessness on the staff’s behalf – by not noticing that the URL of the download site is not actually correct – is just the type of mistake threat actors exploit.
Your Takeaway
Check your IT support team are attending regular cyber security refresher courses.
Cyber Security Awareness Training – Why?
Clive Catton MSc (Cyber Security) – by-line and other articles