As cited
Copy frozen at (site build).
threat intel
Fake 7-Zip Installers Turn Devices Into Residential Proxy Nodes
Researchers identified a threat actor called Lurking Lizard operating a residential proxy botnet using over 230 lookalike domains impersonating legitimate software like 7-Zip. The operation has been active since at least August 2022, with victims' devices unknowingly converted into proxy nodes for malicious traffic.
Why it matters: Organizations and users downloading what appear to be legitimate software from search results may inadvertently install malware that compromises their devices and networks; security teams should monitor for suspicious installer behavior and domain lookalikes.
- Source published
- First seen by Cybersecurity Tracker