1 Million Devices Hit: Inside the Massive Malvertising Campaign episode artwork

EPISODE · Mar 7, 2025 · 25 MIN

1 Million Devices Hit: Inside the Massive Malvertising Campaign

from Daily Security Review · host Daily Security Review

A massive malvertising campaign has compromised one million devices worldwide, using malicious ads on illegal streaming websites to distribute malware. Dubbed Storm-0408, this cybercrime operation leveraged GitHub, Dropbox, and Discord to host payloads, deploying information stealers like Lumma and Doenerium alongside remote access trojans (RATs) like NetSupport. By exploiting Living-off-the-Land techniques, attackers evaded detection, modified security settings, and stole system credentials with precision.In this episode, we uncover the full attack chain—from deceptive online ads to multi-stage malware infections. We’ll explore Microsoft’s response, the critical security flaws exploited, and what organizations can do to protect against these evolving threats. Tune in to learn how cybercriminals weaponize everyday platforms, and why endpoint detection, multi-factor authentication (MFA), and browser security are more essential than ever.

Episode metadata supplied by the publisher feed · Published Mar 7, 2025

Embed this episode

NOW PLAYING

1 Million Devices Hit: Inside the Massive Malvertising Campaign

0:00 25:10

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Daily Security Review?

This episode is 25 minutes long.

When was this Daily Security Review episode published?

This episode was published on March 7, 2025.

Can I download this Daily Security Review episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!