Hackers hijack verified streaming account to spread malware, researchers find
You probably know to be suspicious of a strange pop-up or a random website asking you to download something.
But what happens when the ad comes from a verified account belonging to a company you recognize? That is what made a recent malware campaign involving HBO Max so concerning.
Researchers at Hudson Rock found that cybercriminals hijacked HBO Max's official, verified Reddit account and used it to push 108 distinct malicious ads over roughly 48 hours.
The ads promoted HBO Max downloads along with AI tools, developer software and Mac utilities.
Because they appeared under a verified corporate account, potential victims had one less reason to question what they were seeing.
You do not need HBO Max to be exposed to this type of attack.
The larger lesson involves how criminals can borrow credibility from verified accounts and familiar companies to get people to lower their guard.
And once you click, the attack can take a surprisingly simple turn.
NEW! 🩺 Free CyberGuy LIVE class: Get Better Healthcare With AI Saturday, September 26 at 11 a.m.
ET / 8 a.m.
PT Kurt "CyberGuy" Knutsson will show you five practical ways AI can help you organize your health history, remember important appointment details, understand complicated medical information, research prescriptions and prepare smarter questions for your doctor.
No technical experience is needed.
Save your free spot at CyberGuyLive.com.
Register and receive the replay and step-by-step guide afterward.
5News aggregated this summary from the outlet’s public feed. The full article, with all the context, is on www.foxnews.com — the content belongs to Fox News.