Fake IT support scam infects company devices with Havoc malware

A deceptive tech support scam has tricked employees into compromising their company computers. Posing as IT help, scammers guide victims through steps that install Havoc malware. The attack begins with spam emails and escalates via fake phone calls.

In a recent cybersecurity incident reported by TechRadar, employees believed they were resolving a browser error when they unwittingly infected their own company devices. The scam starts with a flood of spam messages, followed by a phone call from individuals pretending to be IT support. These callers instruct victims on actions that ultimately lead to a full network compromise using Havoc malware.

The process is described as beginning innocently, with the fake support team walking employees through what appears to be routine troubleshooting. However, these steps quietly install the malware, granting attackers deep access to corporate systems. TechRadar highlights how such simple tactics—a spam flood combined with a convincing support call—can result in significant breaches.

No specific companies or locations are named in the report, but the method underscores vulnerabilities in employee training and awareness. The article, published on March 7, 2026, serves as a cautionary example of social engineering attacks in the tech sector.

관련 기사

IT expert Supangat warns of Lebaran digital scams via WhatsApp and SMS in a press conference illustration.
AI에 의해 생성된 이미지

IT expert warns of digital scams ahead of Lebaran

AI에 의해 보고됨 AI에 의해 생성된 이미지

Ahead of Idul Fitri, IT expert from Untag Surabaya, Supangat, urges the public to heighten vigilance against scams via WhatsApp and SMS. Rising digital transactions are exploited by cybercriminals. Vida founder Niki Santo Luhur identifies two main methods: phishing and malware prevalent in Indonesia.

Scammers are sending emails that appear genuine to OpenAI users, designed to manipulate them into revealing critical data swiftly. These emails are followed by vishing calls that intensify the pressure on victims to disclose account details. The campaign highlights ongoing risks in AI platform security.

AI에 의해 보고됨

Cisco Talos has detailed how a Chinese-linked group is exploiting an unpatched zero-day in email security appliances since late November 2025, deploying backdoors and log-wiping tools for persistent access.

Threat actors are mailing physical letters impersonating Trezor and Ledger to trick cryptocurrency hardware wallet users into revealing recovery phrases. The letters create urgency by claiming mandatory checks are required to avoid losing wallet access. Victims scanning included QR codes are directed to phishing sites that steal their wallet information.

AI에 의해 보고됨

Digital squatting has reached new heights as hackers increasingly impersonate brands through domain attacks. This form of cyber impersonation takes various shapes to deceive users and organizations. The trend highlights ongoing challenges in online security.

A fake website is distributing a malicious version of the 7-Zip installer that contains malware. TechRadar warns users that the .com domain is not the official site for 7-Zip. The alert was published on February 11, 2026.

AI에 의해 보고됨

Nigerian businesses are being urged to focus on staff training in the face of escalating phishing threats.

 

 

 

이 웹사이트는 쿠키를 사용합니다

사이트를 개선하기 위해 분석을 위한 쿠키를 사용합니다. 자세한 내용은 개인정보 보호 정책을 읽으세요.
거부