Fake IT support scam infects company devices with Havoc malware

A deceptive tech support scam has tricked employees into compromising their company computers. Posing as IT help, scammers guide victims through steps that install Havoc malware. The attack begins with spam emails and escalates via fake phone calls.

In a recent cybersecurity incident reported by TechRadar, employees believed they were resolving a browser error when they unwittingly infected their own company devices. The scam starts with a flood of spam messages, followed by a phone call from individuals pretending to be IT support. These callers instruct victims on actions that ultimately lead to a full network compromise using Havoc malware.

The process is described as beginning innocently, with the fake support team walking employees through what appears to be routine troubleshooting. However, these steps quietly install the malware, granting attackers deep access to corporate systems. TechRadar highlights how such simple tactics—a spam flood combined with a convincing support call—can result in significant breaches.

No specific companies or locations are named in the report, but the method underscores vulnerabilities in employee training and awareness. The article, published on March 7, 2026, serves as a cautionary example of social engineering attacks in the tech sector.

관련 기사

IT expert Supangat warns of Lebaran digital scams via WhatsApp and SMS in a press conference illustration.
AI에 의해 생성된 이미지

IT expert warns of digital scams ahead of Lebaran

AI에 의해 보고됨 AI에 의해 생성된 이미지

Ahead of Idul Fitri, IT expert from Untag Surabaya, Supangat, urges the public to heighten vigilance against scams via WhatsApp and SMS. Rising digital transactions are exploited by cybercriminals. Vida founder Niki Santo Luhur identifies two main methods: phishing and malware prevalent in Indonesia.

Cybersecurity researchers have identified a fraudulent website mimicking the popular AI tool Claude that delivers backdoor malware to visitors. The discovery highlights how cybercriminals are capitalizing on growing interest in artificial intelligence platforms.

AI에 의해 보고됨

A scam campaign called CallPhantom has appeared in 28 applications available on the Google Play store. The apps, which have been downloaded more than 7 million times combined, promised users access to their call logs.

A North Korean hacking group known as UNC1069 has employed AI-generated videos to deliver malware targeting both macOS and Windows systems. This tactic highlights evolving methods in cyber threats. The development was reported by TechRadar on February 11, 2026.

AI에 의해 보고됨

A fake website is distributing a malicious version of the 7-Zip installer that contains malware. TechRadar warns users that the .com domain is not the official site for 7-Zip. The alert was published on February 11, 2026.

Major VPN providers such as NordVPN, ExpressVPN, and Proton VPN are facing attacks through typosquatting, where fake domains mimic their official sites. A report indicates that 14 percent of these imitation domains are malicious. Users are advised to take precautions to avoid falling victim to these scams.

AI에 의해 보고됨

A new cybercrime platform known as 1Campaign allows hackers to run malicious Google Ads while evading the company's screening process. This development is raising concerns in the cybersecurity community. The platform's emergence highlights ongoing challenges in online advertising security.

 

 

 

이 웹사이트는 쿠키를 사용합니다

사이트를 개선하기 위해 분석을 위한 쿠키를 사용합니다. 자세한 내용은 개인정보 보호 정책을 읽으세요.
거부