Fin7 targets organizations with ai nudify sites

ai organizations

The notorious FIN7 group is using artificial intelligence (AI) and social engineering in a new campaign. The group has created at least seven websites that advertise a “DeepNude Generator.” This tool promises to use deepfake technology to transform any photo into a nude image of the person pictured. People can either download the generator or sign up for a “free trial.” Instead of receiving the tool, they end up downloading malicious payloads such as the stealers Lumma and Redline.

These can be used to deliver further malware such as ransomware. Given the provocative lure, organizations are vulnerable to the campaign. It may entice unsuspecting employees to download malicious files.

“These files may directly compromise credentials via infostealers or be used for follow-on campaigns that deploy ransomware,” according to Silent Push researchers. FIN7 also continues to promote an existing malvertising campaign. It targets corporate users with lures to content by popular brands to spread the .MSIX malware.

The researchers identified a number of active IPs and “active new websites” hosting the ploy. It asks people to download a fake “required browser extension,” which is actually a malicious payload, to view content.

Fin7 exploits AI with malvertising

The DeepNude Generator campaign shows sophisticated thought and planning by FIN7. The group developed at least seven dedicated website URLs to make it appear convincing. There is also evidence that FIN7 is using search engine optimization (SEO).

This keeps users engaged and ranks their honeypots higher in search results. The group created two website versions for promoting the deepfake tool. The first involves a “free download,” and the second offers a “free trial.” Each has a different attack flow.

The campaigns show that FIN7 remains an imminent threat. It also shows the group’s tenacity to evolve with modern technology and psychological tactics. This creates more sophisticated ways to spread malware.

To help combat threats from FIN7 and other cybercriminal groups, developing indicators of attack based on the group’s tactics, techniques, and procedures (TTPs) is one method. Training employees to be aware of these social engineering tactics and blocking the download of unknown files from the Internet onto corporate machines can also help avoid compromise.

Feeling stuck in self-doubt?

Stop trying to fix yourself and start embracing who you are. Join the free 7-day self-discovery challenge and learn how to transform negative emotions into personal growth.

Join Free Now

Picture of Emily Parker

Emily Parker

Emily Parker is the dynamic force behind a groundbreaking startup poised to disrupt the industry. As the founder and CEO, Emily's innovative vision and entrepreneurial spirit drive her company's success.

RECENT ARTICLES

TRENDING AROUND THE WEB

If clutter stresses you out, these 9 things are probably true about your unique mind

If clutter stresses you out, these 9 things are probably true about your unique mind

The Vessel

If someone frequently wears headphones in public, psychology says they may be expressing these 8 social behaviors

If someone frequently wears headphones in public, psychology says they may be expressing these 8 social behaviors

Global English Editing

Children brought up by very strict parents often show these traits as adults

Children brought up by very strict parents often show these traits as adults

Global English Editing

Signs you might be harder to be around than you think (and not realize it)

Signs you might be harder to be around than you think (and not realize it)

Global English Editing

People who act like they know everything often reveal these deep insecurities

People who act like they know everything often reveal these deep insecurities

Global English Editing

7 quiet struggles of people who didn’t get to be children for long, according to psychology

7 quiet struggles of people who didn’t get to be children for long, according to psychology

Global English Editing