malware
Vidar Infostealer Hammers SMBs via Malvertising Campaign
High
Summary
A financially motivated operation is using malvertising to deliver a two-for-one malware payload – the Vidar infostealer and XMRig cryptominer – to consumers and SMBs globally. The campaign employs sophisticated evasion techniques, including password-protected archives, AMSI bypasses, and fabricated certificates, leveraging a Factory-v3 MaaS framework to generate unique binaries and avoid detection. Threat actors are monetizing stolen credentials and cryptocurrency mining, targeting smaller organizations due to the lower profitability of extortion alone.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
