Fake VPN Checker Tool Lets Hackers Bypass Antivirus Protections




  • Attackers use fake Fortinet dialogs and social engineering to trick users into running malware
  • Cache smuggling hides malware in browser cache, bypassing PowerShell download and detection tools
  • The malware is extracted from fake image files and deployed as FortiClientComplianceChecker.exe

Experts have said hackers are using a combination of social engineering, cache smuggling, identity theft and simple bluffing to bypass common security protections and deploy malware to victims’ computers.

Security researchers Expel, as well as an independent researcher with the alias P4nd3m1cb0y, observed websites purporting to be a Fortinet VPN “Compliance Checker” pop-up dialog.



Leave a Comment

Your email address will not be published. Required fields are marked *