Fake PDF editor in Google Ads steals passwords from Windows users worldwide

If you’ve ever clicked a flashy ad for a “must-have” PDF editor online, your passwords could be at risk. Security firm Sophos has uncovered a global malvertising campaign distributing an infostealer called TamperedChef through Google Ads.
The malware hides inside a trojanized AppSuite PDF Editor for Windows, tricking users into installing what looks like legitimate software while quietly harvesting stored credentials.
Subscribe to continue reading
Subscribe to get access to the rest of this post and other subscriber-only content.
