This PowerPoint ploy could help hackers empty your bank account

Sora Shimazaki / Pexels

With various cybersecurity threats on a constant rise, it certainly feels like dangerous malware is around every corner. This time, it found its way into PowerPoint presentations disguised as helpful guides on how to protect yourself against phishing. The irony of it all is strong, but the worst part is that this malware could help attackers empty your bank account.

We’re talking about the Rilide Stealer Chrome browser extension which has been making the rounds lately, as reported by Bleeping Computer. Unfortunately, Rilide is readily-available to threat actors as it is sold for $5,000 to cybercriminals, meaning that it can be distributed in various ways. Chrome extensions are just one thing, although that seems to be the main source of the malware right now. The extension works on all Chromium-based browsers, so it’s not just Google Chrome, but also Brave, Microsoft Edge, and Opera.

Recommended Videos

In order for the malware to work, users have to download this extension first, and to that end, cybercriminals keep finding new ways to trick people to fall for their scams. Most recently, Rilide has been found in phishing emails that pretend to be legit VPN and firewall products. In those emails, the hackers talk about various possible threats users might run into online and offer “guidance” on how to avoid them, claiming that the extension can help.

Those who believe the contents of the presentation are directed to a guide on how to add this extension to Chrome. The links lead directly to malware, and from there, the extension can aid attackers in stealing login credentials, bank accounts, and cryptocurrencies stored in digital wallets. Rilide uses injection scripts to pull this off, and it works with many different crypto wallets, payment providers, banks, and email services.

Bleeping Computer

Rilide also relies on using typosquatting domains to trick people. Also known as URL hijacking, this is a cybercrime tactic that preys on users who mistakenly type the wrong website address. As an example, the user might type “Gooogle.com” instead of “Google.com.” If the address is claimed by a threat actor, the person will be presented with a website that carefully impersonates various banks and payment service providers. Once they input their account credentials, the account is likely to be hijacked.

Researchers found over 1,500 such domains. Some of them have been boosted by SEO poisoning to rank higher in popular search engines. Moreover, the scammers also took to Twitter — or rather, X — to convince people to try out the extension.

The most curious part of Rilide is that it appears to bypass the Chrome Extension Manifest V3. This set of restrictions was meant to protect users from downloading malicious extensions, but unfortunately, Rilide managed to slip past the defenses.

As far as malware goes, Rilide is pretty scary. Not only can it help hackers empty your bank account, but it also might hit from many different angles due to the fact that it’s actively being updated and sold to threat actors. If you want to stay safe, follow the usual golden rule: Never open any links from sources you don’t trust, and don’t download any browser extensions that don’t seem trustworthy.

Thankfully, it seems Rilide is largely pointed at enterprise users and crypto owners, but you should still keep an eye out for any suspicious extensions.

Editors' Recommendations

Monica is a UK-based freelance writer and self-proclaimed geek. A firm believer in the "PC building is just like expensive…
This new AI animation tool is blowing people’s minds

More AI tools are popping up to advance features of the popular generators that are already available, and the latest one is blowing people's minds.

One AI research company, Runway, has recently introduced the second generation of its Motion Brush tool, which helps animate aspects of AI-generated images, such as those created in Midjourney. The simple brush tool to animate images feels like magic -- which is always true when AI is done right. The video below, as posted by AI enthusiast, Rory Flynn, shows the new tool in action.

Read more
Best gaming PC deals: Save on top Alienware, Lenovo, and HP rigs

There's something for every type of gamer in our roundup of gaming PC deals -- whether you're looking for a budget machine, or you want one of the best gaming PCs so that you can play the best PC games at their most demanding settings. We've broken down our favorite offers according to where you stand in the Intel versus AMD rivalry, but either way, you need to hurry if one of these gaming desktops catches your eye as we're not sure how long stocks will last for any of them.
Best gaming PC deals (Intel)

Intel processors deliver amazing performance for gaming PCs, especially if you go for the brand's latest 13th-generation Intel Core processors. You'll just have to make sure that you pair the Intel processor with sufficient RAM for your needs, as you wouldn't want to end up with an unbalanced machine. We've rounded up the best gaming PC deals featuring Intel processors below, but you have to choose what you want to buy quickly because there's no telling when the offers will expire.

Read more
Best iPad deals: Save on iPad Air, iPad Pro, iPad Mini for the holidays

Buying an iPad for yourself or as a gift for a loved one is a great idea. The tablets are very simple to use while offering a surprising amount of power depending on the model you choose. There's pretty much one for every situation with the standard 10.2-inch iPad perfect for all the family, while the iPad Pro is great for if you need to conduct some video editing on the move. There's always the iPad Air for strong performance too while the iPad Mini is great for portability. With so many Apple deals around, we've highlighted some of the very best so you can save big on a new iPad this holiday season.
Best 10.2-inch iPad deals

The standard 10.2 or 10.9-inch iPad remains one of the best iPads for someone on a budget, particularly when it comes to older generations like the 8th or 9th generation models. If you just want an easy to use tablet to browse the internet, watch some streaming shows, and do other straightforward tasks, it's a reasonable solution. Just don't expect premium features like the M1 processor or a high-end display.

Read more