Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Malware & Threats

Skype Malware Campaign Grows – Businesses and Consumers Targeted

Microsoft has suggested that users and businesses switch to Skype following the scheduled shutdown of the MSN Messenger service in March. The problem, however, is that criminals are starting to migrate to that platform if recent discoveries from Trend Micro are any indication.

Microsoft has suggested that users and businesses switch to Skype following the scheduled shutdown of the MSN Messenger service in March. The problem, however, is that criminals are starting to migrate to that platform if recent discoveries from Trend Micro are any indication.

Recently, the Shylock family of malware made headlines for its ability to spread via Skype. Shylock is a banking Trojan, targeting financial data and accounts. While Shylock has been mostly targeting users in the UK and EU, additional malware variants have been observed in the United States.

On Monday, researchers at Trend Micro discovered two additional types of malware targeting Skype users. The first, a worm that has the ability to clear message history is being given the name Bublik. However, code examinations show that the worm downloads additional modules, which have rootkit abilities allowing remote command and control of the infected host.

The second type of malware discovered is being called Phorpiex, which will clone itself to all removable drives once a victim accesses a link to it via Skype. Normally Phorpiex is spread via email, so Skype represents a new attack channel.

“These strings of threats aimed at Skype pose serious risks, not just for ordinary users, but also for small businesses benefiting from the platform,” a blog post from Trend explains. 

“Microsoft is reportedly closing down Windows Messenger on March 15, 2013 and recommends switching to Skype. As such, this poses risks especially to first-time Skype users and with DORKBOT and now, Shylock variants spreading via Skype, users and businesses alike should have a more security-conscious mindset when it comes to using Skype.”

Advertisement. Scroll to continue reading.
Written By

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing for the latest cybersecurity threats, trends, and expert insights.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Today’s attackers are no longer breaking in — they’re logging in. Join this live webinar as we break down the modern identity attack chain and examine how recent breaches exploited weaknesses in authentication, identity verification, and access management processes.

Register

AI has accelerated both sides of the fight. Adversaries are weaponizing vulnerabilities faster, while defenders are racing to ship detections and configurations. Join this live webinar as we explore how to prove your controls actually hold against new threats, map your security maturity, and unite breach simulation with automated pentesting into a single, coordinated program.

Register

People on the Move

Stephen Garcia has been named Chief Information Security Officer at BreachRx.

Kasper Lindgaard has been appointed Vice President of Security Strategy at CoreView.

Chaim Mazal has been named Chief Information Security Officer at GitLab.

More People On The Move

Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.