216.73.217.22

How Threat Actors Exploit Brand Collaborations to Target Popular YouTube Channels

· Published 17/12/2024 00:24 · Modified 17/12/2024 10:04

Export JSON

Essential information

Published
17/12/2024 00:24
Modified
17/12/2024 10:04
Tags
2024-12-17 brand impersonation content creators phishing social engineering youtube
Related entities
3 observables, 16 techniques (mitre), 1 malware, 2 others

Description

Cybercriminals are targeting creators through sophisticated campaigns that impersonate trusted brands offering collaboration deals. The malware is disguised as legitimate documents and delivered via password-protected files on platforms like OneDrive. Once downloaded, it steals sensitive information and grants remote access to victims' systems. The campaign uses parsers to collect email addresses, automation tools for bulk , and multiple SMTP servers for distribution. Attackers leverage templates impersonating brands and PR entities to create convincing emails. The malware communicates with command and control servers to exfiltrate data, using techniques to evade detection. This global campaign highlights the need for and marketers to verify collaboration requests and implement robust cybersecurity measures.

External references