Fake IT support scam infects company devices with Havoc malware

A deceptive tech support scam has tricked employees into compromising their company computers. Posing as IT help, scammers guide victims through steps that install Havoc malware. The attack begins with spam emails and escalates via fake phone calls.

In a recent cybersecurity incident reported by TechRadar, employees believed they were resolving a browser error when they unwittingly infected their own company devices. The scam starts with a flood of spam messages, followed by a phone call from individuals pretending to be IT support. These callers instruct victims on actions that ultimately lead to a full network compromise using Havoc malware.

The process is described as beginning innocently, with the fake support team walking employees through what appears to be routine troubleshooting. However, these steps quietly install the malware, granting attackers deep access to corporate systems. TechRadar highlights how such simple tactics—a spam flood combined with a convincing support call—can result in significant breaches.

No specific companies or locations are named in the report, but the method underscores vulnerabilities in employee training and awareness. The article, published on March 7, 2026, serves as a cautionary example of social engineering attacks in the tech sector.

Verwandte Artikel

IT expert Supangat warns of Lebaran digital scams via WhatsApp and SMS in a press conference illustration.
Bild generiert von KI

It-experte warnt vor digitalen Betrügereien vor Lebaran

Von KI berichtet Bild generiert von KI

Angesichts des anstehenden Idul Fitri fordert IT-Experte Supangat von der Untag Surabaya die Öffentlichkeit auf, die Wachsamkeit gegenüber Betrügereien über WhatsApp und SMS zu erhöhen. Steigende digitale Transaktionen werden von Cyberkriminellen ausgenutzt. Vida-Gründer Niki Santo Luhur benennt zwei Hauptmethoden: Phishing und Malware, die in Indonesien verbreitet sind.

Scammers are sending emails that appear genuine to OpenAI users, designed to manipulate them into revealing critical data swiftly. These emails are followed by vishing calls that intensify the pressure on victims to disclose account details. The campaign highlights ongoing risks in AI platform security.

Von KI berichtet

Cisco Talos has detailed how a Chinese-linked group is exploiting an unpatched zero-day in email security appliances since late November 2025, deploying backdoors and log-wiping tools for persistent access.

Threat actors are mailing physical letters impersonating Trezor and Ledger to trick cryptocurrency hardware wallet users into revealing recovery phrases. The letters create urgency by claiming mandatory checks are required to avoid losing wallet access. Victims scanning included QR codes are directed to phishing sites that steal their wallet information.

Von KI berichtet

Digital squatting has reached new heights as hackers increasingly impersonate brands through domain attacks. This form of cyber impersonation takes various shapes to deceive users and organizations. The trend highlights ongoing challenges in online security.

Two groups linked to China are exploiting a newly discovered vulnerability in Cisco's email security products. The campaign involves zero-day attacks, highlighting ongoing cybersecurity risks. The issue was reported on December 19, 2025.

Von KI berichtet

A fake website is distributing a malicious version of the 7-Zip installer that contains malware. TechRadar warns users that the .com domain is not the official site for 7-Zip. The alert was published on February 11, 2026.

Sonntag, 29. März 2026, 17:53 Uhr

Kenianischer Unternehmer warnt iPhone-Nutzer vor gefälschten Apple-Webseiten

Montag, 02. März 2026, 12:30 Uhr

Hackers hijack .arpa domain for phishing scams

Donnerstag, 19. Februar 2026, 09:18 Uhr

Experts claim ransomware attacks increasingly target firewalls

Freitag, 13. Februar 2026, 14:32 Uhr

Fake Chrome AI extensions targeted over 300,000 users

Mittwoch, 11. Februar 2026, 12:13 Uhr

North Korean hackers use AI video to spread malware

Mittwoch, 04. Februar 2026, 19:25 Uhr

Russian hackers exploit Microsoft Office vulnerability days after patch

Mittwoch, 14. Januar 2026, 06:04 Uhr

Hackers hijack LinkedIn comments to spread malware

Sonntag, 04. Januar 2026, 03:38 Uhr

GhostPairing: WhatsApp Hijacking Threat

Dienstag, 16. Dezember 2025, 03:32 Uhr

Scammers target Leonardo DiCaprio fans with malware torrent

Mittwoch, 05. November 2025, 22:25 Uhr

Russian hackers use Linux VMs to hide malware on Windows

 

 

 

Diese Website verwendet Cookies

Wir verwenden Cookies für Analysen, um unsere Website zu verbessern. Lesen Sie unsere Datenschutzrichtlinie für weitere Informationen.
Ablehnen