Firms hit by huge IT outage warned to be wary of scammers

As if firms hit by the recent massive IT outage don’t already have enough to deal with, they’re now being warned to be wary of scammers and hackers looking to take advantage of the situation.

The global incident kicked off when an error contained in an update for Windows hosts was rolled out by Texas-based cybersecurity firm CrowdStrike. The ensuing chaos impacted important services around the world, with sectors such as travel, banking, retail, and healthcare all suffering major disruption late Thursday and into Friday.

Recommended Videos

In a blog post on Friday, CrowdStrike CEO George Kurtz warned that “adversaries and bad actors will try to exploit events like this.”

Kurtz continued: “I encourage everyone to remain vigilant and ensure that you’re engaging with official CrowdStrike representatives. Our blog and technical support will continue to be the official channels for the latest updates.”

The following day, CrowdStrike revealed that threat actors were attempting to leverage the event to distribute a malicious ZIP archive named crowdstrike-hotfix.zip. The ZIP archive contains a HijackLoader payload that, when executed, loads RemCos, which grants an attacker control of an infected computer.

In a follow-up post on Sunday, the company again warned that customers should “verify they are communicating with CrowdStrike representatives through official channels.”

America’s Cybersecurity and Infrastructure Security Agency (CISA) commented on Sunday that “cyber threat actors continue to leverage the outage to conduct malicious activity, including phishing attempts.” The agency is continuing to work closely with CrowdStrike and other private sector and government partners to actively monitor any emerging malicious activity, it said.

It’s also possible that, because the IT outage was so huge and gained such widespread coverage, even computer users who have nothing to do with CrowdStrike could be tricked into believing they need to install an “essential update” to ensure their PC doesn’t experience any issues going forward. With that in mind, now is the time to be extra vigilant when dealing with emails and messages, especially if they’re trying to get you to download something or click on a link.




Latest posts

Avengers: Doomsday’s first trailer puts everyone on high alert

After months of teasing us with reminders about how large Avengers: Doomsday's cast is going to be, Marvel has finally released a proper trailer...

Electric air taxis go to war

Electric aviation is still in its infancy, but manufacturers are already looking beyond mere air taxi trips across cities. Today, one of the leading...

The AirPods Max 2 are down to their second-best price

There are a ton of deals available to shop today thanks to Best Buy’s “Black Friday in July” sale lasting all week. The sale...

Dr. Jill Lepore on why AI backlash is vital for the future

Today, I’m talking with Harvard professor and New Yorker staff writer Dr. Jill Lepore about her new book, The Rise and Fall of the...

Do you prefer Google’s 3D emoji or the classic style? [Poll]

In the wake of World Emoji Day – yes, that is a thing – Google gave us some insight into why we’re switching over...

The latest and biggest Galaxy Watch Ultra 2 image leak comes two days before launch

Samsung has a scheduled event set for July 22, which is where the company is expected to announce the Galaxy Z Fold 8 series,...

Deals: Black Friday in July sale, Galaxy Tab S11 Ultra up to $430 off, NXTPAPER tabs from $160, Pixel Watch 4, more

Be sure to score your FREE credit at Samsung ahead of this week’s Galaxy Z Fold 8 and Watch 9/Ultra launch, but today’s 9to5Toys...

How AI in Recruitment Is Changing Candidate Screening Without Sacrificing Hiring Quality

Recruiters have always faced a difficult balancing act during candidate screening. On one side is speed. Open roles need to be filled quickly, hiring managers...

China delivers a one-two punch to America’s AI dominance 

China's leading AI companies are ramping up the pressure on Silicon Valley, as Moonshot and Alibaba unveiled models they claim can go toe-to-toe with...

AliExpress fined almost $630 million over illegal product sales

The fine is more than double the penalty that Temu was slapped with for similar DSA violations. | Illustration: The Verge AliExpress has been hit...