This PowerPoint ploy could help hackers empty your bank account

A hacker typing on an Apple MacBook laptop, which shows code on its screen.
Sora Shimazaki / Pexels

With various cybersecurity threats on a constant rise, it certainly feels like dangerous malware is around every corner. This time, it found its way into PowerPoint presentations disguised as helpful guides on how to protect yourself against phishing. The irony of it all is strong, but the worst part is that this malware could help attackers empty your bank account.

We’re talking about the Rilide Stealer Chrome browser extension which has been making the rounds lately, as reported by Bleeping Computer. Unfortunately, Rilide is readily-available to threat actors as it is sold for $5,000 to cybercriminals, meaning that it can be distributed in various ways. Chrome extensions are just one thing, although that seems to be the main source of the malware right now. The extension works on all Chromium-based browsers, so it’s not just Google Chrome, but also Brave, Microsoft Edge, and Opera.

Recommended Videos

In order for the malware to work, users have to download this extension first, and to that end, cybercriminals keep finding new ways to trick people to fall for their scams. Most recently, Rilide has been found in phishing emails that pretend to be legit VPN and firewall products. In those emails, the hackers talk about various possible threats users might run into online and offer “guidance” on how to avoid them, claiming that the extension can help.

Those who believe the contents of the presentation are directed to a guide on how to add this extension to Chrome. The links lead directly to malware, and from there, the extension can aid attackers in stealing login credentials, bank accounts, and cryptocurrencies stored in digital wallets. Rilide uses injection scripts to pull this off, and it works with many different crypto wallets, payment providers, banks, and email services.

Bleeping Computer

Rilide also relies on using typosquatting domains to trick people. Also known as URL hijacking, this is a cybercrime tactic that preys on users who mistakenly type the wrong website address. As an example, the user might type “Gooogle.com” instead of “Google.com.” If the address is claimed by a threat actor, the person will be presented with a website that carefully impersonates various banks and payment service providers. Once they input their account credentials, the account is likely to be hijacked.

Researchers found over 1,500 such domains. Some of them have been boosted by SEO poisoning to rank higher in popular search engines. Moreover, the scammers also took to Twitter — or rather, X — to convince people to try out the extension.

The most curious part of Rilide is that it appears to bypass the Chrome Extension Manifest V3. This set of restrictions was meant to protect users from downloading malicious extensions, but unfortunately, Rilide managed to slip past the defenses.

As far as malware goes, Rilide is pretty scary. Not only can it help hackers empty your bank account, but it also might hit from many different angles due to the fact that it’s actively being updated and sold to threat actors. If you want to stay safe, follow the usual golden rule: Never open any links from sources you don’t trust, and don’t download any browser extensions that don’t seem trustworthy.

Thankfully, it seems Rilide is largely pointed at enterprise users and crypto owners, but you should still keep an eye out for any suspicious extensions.

Editors' Recommendations

Monica is a UK-based freelance writer and self-proclaimed geek. A firm believer in the "PC building is just like expensive…
The 5 best Microsoft Surface Pro alternatives in 2024

Whether you’re looking at the Surface Pro 9 or the Surface Pro 8, the Microsoft Surface Pro lineup is filled with great choices. But they can be a bit expensive, and if they’re just not quite what you’re looking for, you should know that you have other options.

To help you explore those options, we’ve collected our five favorite Surface Pro alternatives for you below. And, if you’re still not convinced and want to grab yourself a Surface Pro, then at least check out these Surface Pro deals to help save yourself some extra cash.

Read more
The 6 best Steam Deck alternatives in 2024

Thanks to some great brand recognition and the fact pretty much all PC gamers are tied into the Steam ecosystem anyhow, it makes sense that we all gravitate towards the Steam Deck when it comes to portable gaming with a highly customizable flavor. The relatively recent addition of the Steam Deck OLED has made it even more appealing with great screen quality improving the experience. However, what about if you want to try something other than the Steam Deck? It’s a great portable console but it isn’t perfect and other options may suit your needs better.

To help you figure out what’s best for your needs, we’ve picked out some of the best Steam Deck alternatives currently available. Each system offers a slightly different experience to the Steam Deck while providing the same great game playing experience, across different gaming ecosystems. To help you come to the best decision, we’ve also looked at why we’ve picked the consoles we’ve picked. Read on while we take you through everything you ned to know.
The best Steam Deck alternatives in 2024

Read more
The 6 best detachable laptops in 2024

Detachable laptops – or tablets with removable keyboards – are a popular alternative to traditional laptops. These devices are ultra-portable and versatile, allowing you to stow them in even the most cramped backpack. They also serve as both tablet and laptop, letting you make use of their touchscreen for notetaking or drawing before reattaching their keyboard to type up a lab report or presentation.

There are hundreds of detachable laptops to choose from in 2024, including powerful models from Microsoft, Apple, Dell, and ASUS. However, it can be hard to narrow down all the options, as many of them offer similar specs or identical designs.

Read more