Fake AI tool installers are being exploited by cybercriminals to distribute ransomware and destructive malware, targeting users in the business and marketing sectors. Threat actors use fake websites and hijacked search engine rankings to lure victims into downloading malicious files. #CyberLock #Lucky_Gh0$t
Keypoints
- CyberLock ransomware encrypts files using PowerShell and demands a $50,000 ransom in Monero.
- Lucky_Gh0$t ransomware is distributed through fake installers for premium AI tools like ChatGPT.
- The Numero malware manipulates Windows GUI components, rendering infected systems unusable.
- Fake AI installers are designed to deceive users into executing malware payloads, including ransomware.
- A widespread malvertising campaign uses fake AI video generator sites to deploy multiple modular malware families.
Read More: https://thehackernews.com/2025/05/cybercriminals-target-ai-users-with.html