A harmless-looking free VPN on GitHub installs a hidden backdoor that spies on everything you do

A harmless-looking free VPN on GitHub installs a hidden backdoor that spies on everything you do

A harmless-looking free VPN on GitHub installs a hidden backdoor that spies on everything you do


  • GitHub repositories host malware disguised as tools that gamers, and privacy-seekers are likely to download
  • The fake VPN campaign drops malware straight into AppData and hides it from plain view
  • Process injection through MSBuild.exe allows this malware to operate without triggering obvious alarms

Security experts have warned of an emerging new cyber threat involving fake VPN software hosted on GitHub.

A report from Cyfirma outlines how malware disguises itself as a “Free VPN for PC” and lures users into downloading what is, in fact, a sophisticated dropper for the Lumma Stealer.



Source link

Back To Top