LinkedIn user accounts have been taken over in huge hacking campaign

Hook on Keyboard
Image Credit: Shutterstock (Image credit: wk1003mike / Shutterstock)

Someone is targeting LinkedIn accounts, trying to break in with either login credentials leaked elsewhere, or with brute-force attacks. 

As a result, many people have had their accounts compromised, while others have been locked out due to too many failed login attempts. 

Earlier this week, Cyberint reported that many LinkedIn users took to social media platforms, such as Reddit, Twitter, or Microsoft Forums, to ask for help. LinkedIn’s customer support, it seems, is being overwhelmed with requests, resulting in unusually long response times.

Slow response

"Some have even been pressured into paying a ransom to regain control or faced with the permanent deletion of their accounts," Cyberint researcher Coral Tayar said in a writeup. 

"While LinkedIn has not yet issued an official announcement, it appears that their support response time has lengthened, with reports of a high volume of support requests."

Sharing their experience on Reddit, one user said their account got hacked six days ago, and that the email associated with the account was changed in the middle of the night.

The victim asked the company for help, to no avail: "No response from them anywhere. It's pathetic. I tried reporting my hacked account, going through identity verification, and even DMing them on @linkedinhelp on Twitter. No responses anywhere. What a joke of a company."

While the goal of the campaign is unknown, as is the identity of the attackers, the researchers did manage to find out that the emails are being replaced with those from the “rambler.ru” service. This doesn’t necessarily mean that the threat actors are Russian, but it gives some credence to the notion. 

As for the goals, social media accounts can be used for malware distribution, social engineering, or fraud. Messages received from friends and colleagues on social media platforms usually have a higher open rate than those coming from complete strangers, possibly resulting in more successful malware campaigns.

Via: BleepingComputer

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
Hacker silhouette working on a laptop with North Korean flag on the background
North Korean hackers are targeting LinkedIn jobseekers with new malware - here's how to stay safe
linkedin
Watch out - that LinkedIn email could be a fake, laden with malware
Fraude en ligne phishing
Google Search ads are being hacked to steal account info
Smartphone with new logo X twitter app background. Application twitter old blue bird change X black and white new.
Phishing campaign targets prominent X users, accounts at risk
A fish hook is lying across a computer keyboard, representing a phishing attack on a computer system
Microsoft 365 accounts are under attack from new malware spoofing popular work apps
In this photo illustration, the business and employment-oriented network and platform owned by Microsoft, LinkedIn, logo seen displayed on a smartphone with an Artificial intelligence (AI) chip and symbol in the background.
LinkedIn facing lawsuit over accusations private messages used to train AI
Latest in Pro
cybersecurity
What's the right type of web hosting for me?
Security padlock and circuit board to protect data
Trust in digital services around the world sees a massive drop as security worries continue
Hacker silhouette working on a laptop with North Korean flag on the background
North Korea unveils new military unit targeting AI attacks
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
Laptop computer displaying logo of WordPress, a free and open-source content management system (CMS)
This top WordPress plugin could be hiding a worrying security flaw, so be on your guard
construction
Building in the digital age: why construction’s future depends on scaling jobsite intelligence
Latest in News
Quordle on a smartphone held in a hand
Quordle hints and answers for Sunday, March 23 (game #1154)
NYT Strands homescreen on a mobile phone screen, on a light blue background
NYT Strands hints and answers for Sunday, March 23 (game #385)
NYT Connections homescreen on a phone, on a purple background
NYT Connections hints and answers for Sunday, March 23 (game #651)
Google Pixel 9 Pro Fold main display opened
Apple is rumored to be prioritizing battery life on the foldable iPhone – which could also feature a liquid metal hinge for added durability
Google Pixel 9
The Google Pixel 10 just showed up in Android code – and may come with a useful speed boost
L-mount alliance
Sirui joins L-Mount Alliance to deliver its superb budget lenses for Leica, DJI, Sigma and Panasonic cameras