Cyber Security News

Hackers Hijack Facebook Business Accounts to Run Malicious Ads

Cybercriminals have been exploiting Facebook business accounts by gaining unauthorized access to them and launching advertising campaigns under the guise of legitimate account owners. As a result, the victims are forced to bear the financial burden of these fraudulent campaigns.

Facebook, a widely recognized social media platform, has become a popular channel for financial advertising. Business owners and marketers leverage this platform to promote their products and services to a vast network of potential customers.

It is worth noting that even criminals took advantage of this platform. Rather than creating their own accounts, they resorted to hijacking other individuals’ business accounts to carry out their advertising campaigns.

To hack the victim’s account they act as advertising partners and marketing experts.

The messages used by the criminals to approach and establish contact with their future victim

The above photo is an example of the criminal approach. The language is mainly free of errors and sometimes very high budgets are promised.

When the user clicks on the link, it will direct them to a zip file that is stored in the cloud. Within the zip file, there is a folder containing malicious code that can potentially harm the user’s device.

It is important to be cautious when opening any files from unknown sources to prevent any harm to your device.

Contents of the ZIP Bilder downloaded from the link in the message. Ten out of 11 files do not contain any malicious code;

When the victim opened the malicious file, the criminal accessed a silver platter and stole the cookies of the Facebook accounts.

Through this, hackers exploit several things for themselves, such as fake creating stores, malware downloads, and hijacking their advertising campaigns with payment information stored in the account, reads Gdatasoftware report.

To stop an aggressive takeover of an account, you must do four things:

  • Not being permanently logged in
  • Use multi-factor authentication
  • Permanent skepticism about direct messages and unsolicited links
  • Use a password manager instead of the browser’s “remember password” feature.

Protect yourself from vulnerabilities using Patch Manager Plus to patch over 850 third-party applications quickly. Try a free trial to ensure 100% security.

Dhivya

Divya is a Senior Journalist at Cyber Security news covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Recent Posts

Hackers Target AI Infrastructure With RCE, Prompt Injection and API Key Theft

Hackers are actively probing AI systems, turning exposed gateways and agent tools into routes for…

3 hours ago

Hackers Make Phishing Pages Change Their Code Every Time Someone Opens Them

Hackers are making some phishing pages harder to track by changing the code delivered to…

3 hours ago

Iran-Linked Hackers Reportedly Knock UK Power Plant Offline for Four Days

A cyber incident reportedly forced a British power plant to halt operations for about four…

4 hours ago

Russian Hackers Use New HOOKEDGE Malware to Spy on European Defense and Diplomatic Targets

Russian hackers have used a new backdoor called HOOKEDGE to target defense manufacturers, government bodies,…

5 hours ago

Ransomware Gang Claims AI Can Analyze 700GB of Stolen Data Every Hour

TITAN ransomware is pairing file encryption with an ambitious claim: artificial intelligence that can sort…

5 hours ago

Hackers Compromise Hundreds of WordPress Sites to Deploy Amatera Stealer via ClickFix

A fake student resume is being used to place a remote-access tool on researchers’ Windows…

6 hours ago