Coronavirus malware scams return with a venegeance

(Image credit: Shutterstock)

Criminals are exploiting fears over the growing threat of coronavirus to trick users around the world with new online scams, experts have warned.

Research from security firm Proofpoint has found that email attacks using coronavirus as a hook are expanding in number and reach, with victims having personal and financial information stolen.

Some attacks are even spoofing official World Health Organisation (WHO) advice emails in order to make their scams appear more legitimate, with others claiming there is a worldwide conspiracy to hide the cure.

Coronavirus malware

Proofpoint's investigation found a number of distinct scams targeting users worried about the spread of coronavirus, along with attacks specifically targeting certain industries, with dedicated attacks against construction, education, energy, healthcare, industry, manufacturing, retail, and transportation companies.

In one attack, company employees were sent fake internal emails purporting to be from their firm’s president giving advice on what to do if affected by coronavirus - but in reality they are having their personal details stolen.

Another campaign claims there is a global conspiracy to cover up a cure for coronavirus, with victims told to click a link to find out the cure - but again, their personal details would be stolen through phishing sites.

(Image credit: Proofpoint)

A final campaign (pictured above) uses the logo of the WHO to spoof official advice emails, which trick users into downloading keylogging malware (AgentTesla) which can then record all keys pressed by the victim, potentially giving hackers access to online banking accounts.

The majority of attacks are being detected against Japan and the United States, although Proofpoint also saw large-scale incidents in Australia and Italy.

The company says it will continue to monitor the latest threats and issue advice where possible, with users reminded to, "be watchful and exercise caution where Coronavirus-themed emails and websites are concerned." 

Mike Moore
Deputy Editor, TechRadar Pro

Mike Moore is Deputy Editor at TechRadar Pro. He has worked as a B2B and B2C tech journalist for nearly a decade, including at one of the UK's leading national newspapers and fellow Future title ITProPortal, and when he's not keeping track of all the latest enterprise and workplace trends, can most likely be found watching, following or taking part in some kind of sport.

Latest in Security
China
Chinese hackers who targeted key US infrastructure charged by Justice Department
An American flag flying outside the US Capitol building against a blue sky
Mass federal layoffs will have “devastating impact on cybersecurity, former NSA cybersecurity director warns
A hand reaching out to touch a futuristic rendering of an AI processor.
North Korean fake job hackers are going the extra mile to make sure their scams seem legit
A hand reaching out to touch a futuristic rendering of an AI processor.
Google Cloud unveils new AI Protection security tools, no matter which model you use
A TV remote pointing at YouTube logo
YouTube warns of phishing video using its CEO as bait
China
Microsoft says Chinese Silk Typhoon hackers are targeting cloud and IT apps to steal business data
Latest in News
China
Chinese hackers who targeted key US infrastructure charged by Justice Department
A screen shot of Lady Gaga in her interview with Zane Lowe for Apple Music
Lady Gaga’s Spotify press conference is being live streamed today – here’s where you can watch Spotify’s big step forward in fan inclusion
An AMD Radeon RX 9070 XT made by Sapphire on a table with its retail packaging
Bad news PC gamers - it seems AMD's aggressively low price for its Radeon RX 9070 GPU will only be for a limited time
13-inch and 15-inch MacBook Air M4 in Sky Blue
I saw Apple's new 13- and 15-inch MacBook Air with M4, and here's why Sky Blue is my new favorite color
NVIDIA GeForce RTX 50 Series image
Nvidia's 572.70 Game Ready Driver promises a black screen fix - but unless you have an RTX 5070 it's probably best to avoid updating for now
An Nvidia GeForce RTX 5080 resting on an RTX 5090 on a gray crafting mat.
Corsair tells us only one of its prebuilt PCs with an RTX 5000 GPU has suffered from chip-level fault, suggesting it’s as rare as Nvidia claimed