Threat Advisory

New Malware Campaign Targets Zoom Users

Threat: Malware
Criticality: High
[subscribe_to_unlock_form]

Summary:

Zoom has been in the spotlight lately as one of the booming applications for video conferencing, despite its issues with end-to-end encryption. It did not take long for cyber-criminals to re-package it, disseminate it on third-party markets and wait for new victims to install it, recently multiple fake zoom sites were spotted on various social media platforms , all these sites were having same UI. These were spotted spreading vidar malware. Vidar is a highly malicious malware that steals information and cryptocurrency from infected users and is upgraded version of Arkei stealer. Vidar is a MaaS ( Malware-as-a-Service ), which can be purchased on its official website.[/subscribe_to_unlock_form]

Summary:

Zoom has been in the spotlight lately as one of the booming applications for video conferencing, despite its issues with end-to-end encryption. It did not take long for cyber-criminals to re-package it, disseminate it on third-party markets and wait for new victims to install it, recently multiple fake zoom sites were spotted on various social media platforms , all these sites were having same UI. These were spotted spreading vidar malware. Vidar is a highly malicious malware that steals information and cryptocurrency from infected users and is upgraded version of Arkei stealer. Vidar is a MaaS ( Malware-as-a-Service ), which can be purchased on its official website.[emaillocker id="1283"]

References:

The following reports contain further technical details:

https://blog.cyble.com/2022/09/19/new-malware-campaign-targets-zoom-users/

https://any.run/malware-trends/vidar#:~:text=Vidar%20is%20an%20information%20stealer,%2C%20steal%20cryptocurrency%2C%20and%20more.

[/emaillocker]
crossmenu