Automatically translated.View original post

Storm malware can bypass MFA-style identity confirmation

Beware! Storm malware can easily bypass MFA-style identity confirmation and then remotely restore the Session.

Account access protection with Multi-Factors Authentication to prevent hacking by hackers, but it does not fail. Some malware can break through this protection system so that it can steal the victim's account, such as itself.

According to a report by the website, Yahoo has mentioned the detection of a new malware, Storm, by a research team from Varonis Threat Labs, an expert company in cyber detection. Although the source does not indicate the type of malware, many of its capabilities make it possible to predict a malware type of data theft or Infostealer, with the ability to steal a variety of data from the victim's system. One of its key abilities is the theft of sessions on account access, such as Session Cookies and Authentication Session, which allows for the destruction of MFA identity authentication systems. Yes, including information related to passwords such as Autofill and passwords saved on the web browser. This malware supports the theft of data from many web browsers, such as the Chromium family, such as Chrome and the Gecko family, such as Firefox, etc. Not only does it, the malware can also provide other information such as local Documents, Screenshots, Messenger App and Cryptokerrency Wallet.

In addition to the ability to steal data, this malware has a lot of mischief, whether it is smuggling stolen password data back to the C2 or Command and Control servers by encryption or Encryption, the ability to evade endpoint detection and response systems, etc. The malware outbreak has now spread in a variety of countries around the world, including the United States, Brazil, Indonesia, Vietnam, and a variety of other countries, with at least 1,715 victims at the time of the research team's investigation.

More frightening than the above-mentioned capabilities, this malware is sold as rental or MaaS (Malware-as-a-Service) on the underground black market at a tangible price, making it easy to access if it has money. The price starts from $300 ($9,683) for a seven-day trial package, $900 per month ($29,047) for a standard package, $1,800 per month ($58,099.50) for a team-based package that supports up to 100 users, and building up to 200 decoy applications. Subscription is over. The malware will continue to collect data from the victim.

# Trending # Lemon 8 Howtoo # lemon 8 diary # mfa # freedomhack

4/30 Edited to

... Read moreจากประสบการณ์ส่วนตัวที่ต้องดูแลความปลอดภัยของข้อมูลบนอุปกรณ์หลายเครื่อง ผมขอแชร์ข้อควรระวังเกี่ยวกับมัลแวร์ Storm ซึ่งไม่ได้เป็นแค่ภัยคุกคามทั่วไป แต่เป็นมัลแวร์ที่มีเทคนิคขั้นสูงในการขโมยข้อมูล โดยเฉพาะความสามารถขโมย Session Cookies และ Authentication Session ซึ่งหมายความว่ามันสามารถเลี่ยงการยืนยันตัวตนแบบ MFA ได้อย่างชำนาญ หลายครั้งเรามักจะพึ่งพาการตั้งค่าความปลอดภัยขั้นสูง เช่น MFA เพื่อป้องกันบัญชีถูกแฮก แต่มัลแวร์ตัวนี้แสดงให้เห็นว่า การมี MFA อย่างเดียวอาจไม่เพียงพอ เราควรเสริมด้วยการใช้โปรแกรมป้องกันมัลแวร์ที่มีความสามารถตรวจจับพฤติกรรมที่ผิดปกติ รวมถึงระมัดระวังการติดตั้งแอปหรือซอฟต์แวร์ที่ไม่น่าเชื่อถือ ที่น่าสนใจคือมัลแวร์ Storm ยังสามารถขโมยข้อมูลอื่น ๆ เช่น ไฟล์เอกสารบนเครื่อง การจับภาพหน้าจอ และข้อมูลจากแอปพลิเคชันส่งข้อความ รวมถึงกระเป๋าเงินคริปโตซึ่งเพิ่มความเสี่ยงให้กับผู้ใช้ที่เก็บข้อมูลสำคัญเหล่านี้บนเครื่องเดียวกัน ทั้งนี้เราควรทำการอัปเดตซอฟต์แวร์และเบราว์เซอร์อย่างสม่ำเสมอ ใช้รหัสผ่านที่แข็งแรงและไม่ซ้ำกัน รวมถึงเปิดใช้ระบบแจ้งเตือนเมื่อมีการล็อกอินจากอุปกรณ์หรือสถานที่ใหม่ เพื่อเพิ่มระดับการป้องกันการเข้าถึงโดยไม่ได้รับอนุญาต สุดท้าย การที่มัลแวร์ Storm ถูกจำหน่ายในรูปแบบ Malware-as-a-Service (MaaS) ทำให้ภัยนี้แพร่หลายและเข้าถึงง่ายขึ้น จึงจำเป็นที่ผู้ใช้งานทั่วไปและองค์กรต้องตื่นตัวในการรักษาความปลอดภัยไซเบอร์อย่างจริงจัง และมีการอบรมให้ความรู้แก่ทุกคนในทีม เพื่อป้องกันไม่ให้เกิดความเสียหายจากการถูกโจมตีทางไซเบอร์ในยุคนี้

Related posts

Prompts for creators
🌱 From Chaos to Calendar: Ready to move those organized tasks into Notion? Here are 3 simple steps to seamlessly integrate your to-dos into your existing system. Keep it low-friction & effective! Copy & paste your sorted tasks! 📅 #NotionTips #TaskManagement #DigitalOrganization #work
Bytes' Atelier

Bytes' Atelier

10 likes

A desk setup with a curved monitor displaying a pink grid wallpaper and pixel art juice boxes. An overlay on the screen reads "How to Make Your PC Run Faster – 5 Easy Tips!". A keyboard, laptop, and drink are on the desk, with a Lemon8 watermark.
A desk setup with a monitor displaying tips for a faster PC, including "Upgrade Your Storage & RAM," "Keep Your Drivers & OS Updated," and "Check for Malware & Viruses." An overlay highlights "Upgrade Your Storage & RAM and more!" with a Lemon8 watermark.
A desk setup with a monitor displaying instructions for "Disable Startup Programs" and "Clean Temporary Files." The screen shows steps like using Task Manager and deleting temporary files. A keyboard, laptop, and drink are on the desk, with a Lemon8 watermark.
⚡ How to Make Your PC Run Faster – 5 Easy Tips! 🖥️🔥
💡 1. Disable Startup Programs 🚀 Too many apps launching at startup slow down your PC! ✅ Open Task Manager (Ctrl + Shift + Esc) ✅ Go to the Startup tab ✅ Disable unnecessary apps to speed up boot time 💡 2. Clean Temporary Files 🗑️ Over time, junk files slow your system down. ✅ Press Win
skaeszun

skaeszun

284 likes

A vibrant cover image featuring Anjali Viramgama amidst confetti, with the title "Top Cybersecurity Certificates." It highlights key certifications for advancing skills and knowledge in cybersecurity.
A card detailing the Certified Information Security Manager (CISM) certification. It explains CISM focuses on managing information security programs, covering risk management, governance, and incident response.
A card detailing the Certified Ethical Hacker (CEH) certification. It explains CEH focuses on ethical hacking and penetration testing, covering topics like network scanning, malware threats, and social engineering.
Top Cybersecurity Certificates
There are several reputable cybersecurity certifications that can help you advance your skills and knowledge in the field of cybersecurity. 1. Certified Information Systems Security Professional (CISSP): - CISSP is a globally recognized certification that covers a wide range of cybersecurit
anjali.gama

anjali.gama

111 likes

Check out this website that helps you when you’re feeling uninspired! I walk you thru the process of downloading the svg file to taking it to cricut design space! Happy crafting. #designinspo #creativeart #cricutprojects #svgfiles #CricutTips
VlunaWorks

VlunaWorks

47 likes

It's no secret that Karol G just slayed the #Grammys #Glambot . #AwardsSeason
user6854050772614

user6854050772614

11 likes

A young woman with long dark hair, wearing a pink satin shirt, smiles at the camera while sitting at a table. Overlay text reads: 'Tools and sites I use as a cybersecurity student to progress my skills and keep me interested in studying'.
A screenshot of 'The Hacker News' website, displaying various cybersecurity news articles from January 2025, including topics like vulnerabilities, malware, cyber espionage, and AI jailbreak methods. An ad for Zscaler and a banner for CIS Hardened Images are also visible.
A screenshot of the O'Reilly learning platform, showing various books and expert playlists related to AI, engineering, and data. Overlay text highlights the subscription cost ($50/month or $499/year) and its value for accessing books and live events.
Tools and sites I use as a cybersecurity student 🌸
#cybersecuritystudent #cybersecurity #techgirlie
LexiStudies

LexiStudies

107 likes

😫 Wanting to quit your 9-5?
Becoming a Pinterest Manager might be for you! In less than a year, I went from earning $2K at my 9-5 to over $4K/month with Pinterest management alone. Now, with all the different skills and platforms I lesrned, I make anywhere from $12-15K A MONTH! Back then, I knew I had to do something
Bria | Social, Design, & AI

Bria | Social, Design, & AI

485 likes

for the low energy days frfr
Some days I don’t need a 10-step productivity system. I need something gentle enough for a tired brain. Here are 3 AI prompts I use when I’m overwhelmed: 1. “Help me pick the 3 most important things I need to do today. Keep it realistic.” 2. “Turn this messy brain dump into a simple checkli
Bytes' Atelier

Bytes' Atelier

8 likes

A colorful Disney tattoo of Stitch from Lilo & Stitch on an arm, featuring a watercolor-style blue and purple splatter background. The character is depicted with a wide, happy grin and outstretched arms, showcasing a vibrant and playful design.
A Disney tattoo on an arm featuring Thumper from Bambi, sitting among purple and blue flowers and tall grass. The tattoo includes the text "Macushla R.I.P. Johnny" below the character, rendered in a traditional tattoo style.
A traditional-style Disney tattoo on a leg depicting Esmeralda from The Hunchback of Notre Dame. She is shown in a flowing purple dress, holding a large crescent moon or hoop, surrounded by golden stars. The text "From my flash! Tiny blast over" is visible.
🏰✨Disney Tattoos✨🏰
Did you know, I’m a HUGE Disney nerd! It’s always a treat whenever I get to do something based on Disney, small or big, flash or custom 🥰 Here’s just a small compilation of some of my favorites! #disney #disneytattoo #tattoo #tattooartist #traditionaltattoo
Malware 🔜 FC

Malware 🔜 FC

377 likes

Turn Jumbled Ideas into a Content Plan
A cozy creator prompt for sorting through messy thoughts when your brain feels too full to start. Use AI to organize what’s already in your head into clear themes, possible post ideas, and one simple place to begin. Perfect for overwhelmed creators who need a softer way to plan content without sta
Bytes' Atelier

Bytes' Atelier

5 likes

Turn Your Perfume Into a Content Idea
A tiny creator prompt for turning your fragrance shelf into content inspiration. Pick one perfume, describe it, or upload a photo — then let AI help you turn the scent into a mood, story, and post idea. #AICreatorPrompt #PerfumeTok #ContentIdeas 📝 Prompt: “Use this perfume as inspir
Bytes' Atelier

Bytes' Atelier

6 likes

🎨 Cozy Notion AI Prompt Pack: OS Lessons
Transform your Notion workspace with this cozy prompt pack! Learn how to use Notion AI with lessons from my personal operating system for gentle productivity and effortless organization. Perfect for beginners looking to integrate AI into their daily flow. #Notion #NotionAI #Productivity #
Bytes' Atelier

Bytes' Atelier

3 likes

A hand holds a pink iPhone with text 'Tech 101 For Beginners' and 'Tips to help Non-Tech Savvy Users,' accompanied by laptop and phone app icons, against a brick background.
A pink iPhone in its box, illustrating the tip to 'Keep Your Devices Updated' with text explaining why updates help and advising to enable automatic updates.
An iPhone screen displaying app icons and display settings, accompanying the tip to 'Use Strong, Unique Passwords' with reasons why and advice on using combinations and password managers.
Tech Hacks For Beginners 📲💻😬
I have some great tips for non-tech savvy tech users. I know these tips will help you learn your tech more quickly and effectively. 1. Keep Your Devices Updated Why It Helps: Updates often contain security patches and improvements that help your device run smoothly. Tip: Enable automatic updat
Joy 📚

Joy 📚

283 likes

warm sultry combo
omg @Andromeda’s Moon tihota dust has me in a hold! it smells so amazing! I can't wait for it to be back in stock! Top notes are Bourbon Vanilla, Mango, Coconut Water and Mate; middle notes are Vanilla, Matcha Tea, Brown sugar, Amber and Star Jasmine; base notes are Vanilla, Tonka, Sandalwo
✨ Malware Noir ✨

✨ Malware Noir ✨

1 like

3 cybersecurity jobs that pay well
1. Security Analyst - What They Do: Monitor networks for vulnerabilities, investigate breaches, and implement security measures. - How to Start: - Obtain certifications like CompTIA Security+ or CySA+. - Gain experience with tools like SIEM (e.g., Splunk). - Start in an I
vedha | career tips (tech) 👩‍

vedha | career tips (tech) 👩‍

644 likes

love these 💋
have you tried kst? #perfumerecommendations #pride🌈 #perfumecollection
✨ Malware Noir ✨

✨ Malware Noir ✨

6 likes

Recover Hidden Files from USB Using Command Prompt
Can’t see your files on a USB stick even though they’re there? This video shows how to use Command Prompt commands (like attrib) to unhide files hidden by system attributes or viruses — plus what to try if that doesn’t work. #USB #cmdanks #windows 11 #techtutorial #newonlemon8
XanthusTechCore

XanthusTechCore

2 likes

If you’re staring at Cricut Design Space with zero ideas this is for you! This free SVG website is perfect when you need inspiration fast. Save & share with your crafty bestie 💖 #designinspo #creativeart #DesignProcess #cricutprojects #CricutTutorial
VlunaWorks

VlunaWorks

2 likes

Back Up Outlook Emails to an External Hard Drive
Need to back up your Outlook emails to an external hard drive? Here are 2 simple methods to help you out. Download AOMEI Backupper and give it a try! #backup #outlook #externalharddrive
SmoothTechie

SmoothTechie

1 like

A person with long dark hair and a straw hat walks through a sunny public square. Overlay text reads "CYBERSECURITY CAREER Tips to get started," introducing advice for a career in cybersecurity.
A person in a white dress walks on a path next to green bushes. Overlay text advises to "Build a Strong Technical Foundation" by learning networking basics, operating systems, and scripting languages.
People walk across a street with benches and trees in the background. Overlay text suggests to "Get Hands-On Experience" through CTF competitions, cybersecurity challenges, and setting up a home lab.
Tips for pursuing a career in cybersecurity
1. Build a Strong Technical Foundation A solid understanding of systems, networks, and programming is essential for identifying and mitigating security threats. • Learn networking basics (e.g., TCP/IP, firewalls, VPNs). • Gain familiarity with operating systems (Windows, Linux)
vedha | career tips (tech) 👩‍

vedha | career tips (tech) 👩‍

134 likes

Windows Tools - Part 1: Task Manager
💻 Windows Tools Every IT Professional Should Know 🩷 Part 1: Task Manager Task Manager is one of the first tools many IT professionals learn to use—and for good reason. Whether you’re troubleshooting a slow computer, investigating high resource usage, reviewing startup applications, monitorin
ITwDee

ITwDee

8 likes

Catalog Your Perfumes with AI
Use AI to organize your fragrance collection faster. Upload photos, paste your perfum list, or use voice-to-text notes, then have AI turn everything into a clean Notion-ready database with notes, scent families, seasons, ratings, and wishlist status. Perfect for perfume lovers who want their colle
Bytes' Atelier

Bytes' Atelier

6 likes

📍USB Write Protected? Fix It Instantly
Seeing “The disk is write-protected” error on your USB drive? This quick guide shows how to remove write protection and regain full access to your files. Learn how to check the physical lock switch, use DiskPart commands, repair file system errors, and fix registry issues step by step. Many cases a
XanthusTechCore

XanthusTechCore

5 likes

🚨 16 Billion passwords leaked - the largest breach ever 🚨 Here is how it happened and what you can do to be safe. #news #databreach #cybersecuritytips #onlinesafety
Cybersecurity Girl

Cybersecurity Girl

128 likes

💚🖤 #fyp #fypシ #fypシ゚viral #foryoupage #inspire #in
💚🖤 #fyp #fypシ #fypシ゚viral #foryoupage #inspire #inspiration #goviral #motivation #motivate #dankvisionz
Lisa Marie 💚🖤

Lisa Marie 💚🖤

6 likes

The image displays a title "Files Copied to USB Drive Disappear - Quick Solutions" above a blue USB drive with glowing data icons. Below, text asks, "USB drive files vanished after transfer? Don't panic—try these solutions to recover and prevent data loss."
This image outlines the first two of "4 Recovery Methods." It details steps for "1: Show Hidden Files via File Explorer" for both Windows and macOS users, and "2: Use Command Prompt (Windows)" with the attrib command to reveal hidden files.
The image presents the last two of "4 Recovery Methods." It describes "3: Run Antivirus Scans" to remove malware and "4: Use Data Recovery Software (MyRecover)" with steps to scan, preview, and recover lost files from a USB drive.
Files Copied to USB Drive Disappear? Lets Recover
Copied files to your USB drive, then they vanished? This issue is often caused by hidden files, unsafe ejection, corruption, or failing flash storage. This guide shows how to reveal hidden files, repair USB errors, and recover missing data safely before it gets overwritten. #usb #datarecovery
XanthusTechCore

XanthusTechCore

5 likes

☕️ messy notes ??
Turn your chaotic brainstorming into clear, actionable steps! This prompt helps you organize thoughts and find a gentle path forward. Copy & paste your brain dump and let AI do the heavy lifting #AIPrompts #NotionAI #OrganizedThoughts #aipromptsforbusiness
Bytes' Atelier

Bytes' Atelier

5 likes

Elite Hacker Destroyed His Empire By Forgetting On
Bro, I really forgot to use a VPN 💀 #hacker #cybercrime #fail #tech #arrestedstupidly
arrestedstupidly

arrestedstupidly

1 like

SOS!!! Wha do you do if you click a phishing email link… two times?!? So far I have: 1, added two factor sign on 2, changed my passwords 3, stress cried and spiraled But for real. What do you do… how do I know if there is now malware (? Is that what it’s called ?) living on my computer?!?
Alexandra Wildeson

Alexandra Wildeson

2 likes

Reusable AI Prompts for Dashboards, Databases...
Notion Skills Prompt Pack for turning your ideas into reusable Notion AI workflows. Includes 5 prompt cards for dashboards, databases, workflows, projects, and content planning. Save each prompt as a Notion page, mark it as a Skill, and reuse it whenever you need a simple system. #aiprompts #ai
Bytes' Atelier

Bytes' Atelier

9 likes

custom background
I love making these custom backgrounds. #creatorideas #background #digitalart
Bytes' Atelier

Bytes' Atelier

0 likes

You need TikTok ?
Here is how you can download TikTok if you need help with and apple phone just ask me I can help with Apple phone you need to change your region on the Apple Pay store
Ali

Ali

10 likes

Olas just wandeing off at Disneyland Paris at the New World of Frozen coming next March! Beyond cute #disneyland #WorldOfFrozen #frozen #disneyadventureworld #disneylandparis
gez9knzxvzz

gez9knzxvzz

1 like

A black journal featuring a white drawing of Jack Skellington's face and stars, held by a hand.
A journal spread featuring handwritten lyrics for "Sally's Song" from The Nightmare Before Christmas, adorned with various character stickers from the movie.
A journal spread with religious quotes and Bible verses about hope, rejoice, and faith, decorated with cross stickers and floral designs.
Journal Spreads ive done recently
okay its been a few months but so far i did great with all the stickers i love buyings stickers now as a comfort thing idk how to say it ig? but overall my journal spreads look so good so far i hope yall like it js as much as i do<3 anywho im waiting for an upcoming concert to add i cant wait to
mal<3

mal<3

164 likes

Ai Prompt to start the day.
It's hump day, I have been working on two sprints(projects). I need to remember where I left off yesterday. I simply ask my agent where we left off and where to pick up. That is it. #aiprompt #aipromptsforcreators #aiprompts #agents
Bytes' Atelier

Bytes' Atelier

4 likes

A few updates to my journal 🖤🤗
#journalthrough #journal
mal<3

mal<3

16 likes

Never plug your phone or computer into usb plugs in hotels or airports here’s why 👇🏼 A USB port doesn’t just deliver power, it can also transfer data. A compromised hotel USB outlet could secretly install malware on your phone or copy your data without you realizing it. Hotels, airports, and o
Cybersecurity Girl

Cybersecurity Girl

149 likes

How to Make a Dyson Sphere in Sandboxels
#dysonsphere #science #sciencegames #gaming #pixelart
R74n

R74n

7 likes

art
random drawing I did last night #art
Bytes' Atelier

Bytes' Atelier

1 like

CYBER WEAPONS CAN CRASH NATIONS IN SECONDS
Zona

Zona

4 likes

Popular CVE vulnerability scanners
CVE scanners help find known vulnerabilities in software and systems by checking them against the CVE database. Here are a list of popular open-source or commercial CVE scanners 😎👆 Find high-res pdf ebooks with all my cybersecurity related infographics at https://study-notes.org #cybersec
Dan Nanni

Dan Nanni

1 like

A person points at a computer screen displaying various app icons and text like "Customize your AI chats with this tool TypingMind" and "The best of Setapp". Overlays read "Tech tips", "Netflix of Productivity", and "Mac Edition!".
Against a lake background, two app icons are shown: CleanMyMac and Paste. Text describes CleanMyMac for tidying Macs and Paste as a clipboard for saving copied content.
Against a lake background, two app icons are shown: TextSniper and Ulysses. Text describes TextSniper for extracting text from visuals and Ulysses for writing and publishing.
Mac Productivity Apps: Make More Time for YOU! 💻
Let’s talk about one of the most important things in our daily routines—our workflow. Whether you’re working for yourself, managing a side hustle, or simply trying to keep everything in check, examining and refining your workflow is key to getting more done with less stress. 💪 By finding simple, ef
Cas Lin

Cas Lin

35 likes

This image introduces the problem of a folder appearing empty on Windows despite containing files, with the title "'This Folder Is Empty' Error on Windows? - Complete Fixes." It includes a screenshot of a File Explorer window displaying the "This folder is empty" message.
This image outlines the first three step-by-step fixes for the "This folder is empty" error. It details how to show hidden files and folders on Windows 11 and 10, use the ATTRIB command in CMD, and repair file system errors using chkdsk.
This image presents the final three step-by-step fixes for the "This folder is empty" error. It covers scanning for malware, updating USB and disk drivers, and using data recovery software as a last resort, including a mention of MyRecover.
“This Folder Is Empty” But Files Are There? Fix It
Seeing “This folder is empty” even though your files should still be there? This issue is often caused by hidden files, corrupted file systems, virus infections, or drive connection problems.This video shows how to reveal hidden files, repair disk errors, recover missing data, and fix folders that
XanthusTechCore

XanthusTechCore

0 likes

SATURDAY | 2 MAY 2026 | Cybersecurity Report
The digital frontlines just got a lot more dangerous. Today on Cyber F.M., host Arias Thomas breaks down the industrialization of cybercrime and the collapse of the software supply chain. If you think your "secure" tools are safe, think again. Inside Today’s Broadcast: 🏮 The Paperclip
Cyber F.M.

Cyber F.M.

3 likes

🛡️ The GIS-R10 Controller — Enterprise-Level Power
🚀 The perfect hotspot solution for internet speeds of 400 Mbps! Designed for medium to large hospitality businesses like hotels, resorts, campgrounds, RV parks, marinas, and more, the GIS-R10 makes it easy to provide WiFi access as a complimentary service or a paid option. 🏨🌴🚐⚓ ✨ Why business
Guest Internet

Guest Internet

0 likes

An image expressing frustration with Riot Games, featuring "I Hate Riot!!" text over League of Legends characters. A Riot Vanguard notification states, "Vanguard has blocked something from loading on your machine," reflecting the user's issues with the game client and anti-cheat software.
I Hate Riot Client & Vanguard!!
As much as i like League of Leguends it pisses me off how i can't delete Riot Client and Vanguard so i can redownload LoL because i keep getting erros whenever i try to log in. They are SO damn hard to delete that some people are calling them Spyware/Malware and i'm starting to believe t
Raine🌈✨️

Raine🌈✨️

1 like

Happy Pride 🌈 Smell Gay 💋
KST is a true fragrance artist! and my clients are addicted to the Banana Milk Coffee. They have told me it's the perfect summer coffee scent. Other clients like Gay Oppa and P*ssy Power more. And I know they plan on wearing them to pride events ⭐️Overall rating: 10/10 #bananaperfumes
✨ Malware Noir ✨

✨ Malware Noir ✨

1 like

See more