This creepy spyware watches you through your webcam and snaps incriminating photos
- Two low-level cybercrime groups use Stealerium to extort victims watching porn
- The malware takes screenshots and webcam photos, then demands payment
- It spreads via phishing and mostly targets individuals and small industries
Cybercriminals have begun using spyware to take screenshots and webcam snapshots of people watching pornography on their computers, and then extorting them for money, experts have warned.
A report from security researchers Proofpoint claims to have seen at least two hacking groups doing this, outlining how TA2715 and TA2536, two “low sophistication” cybercrime groups, have been using an upgraded version of Stealerium, a known open source infostealer.
Stealarium itself is distributed in a regular fashion – via phishing emails spoofing invoices or payment notices. The crooks mostly targeted people in the hospitality industry, education, and finance, but Proofpoint added that other people, mostly individuals outside any workplace environment, were also likely targeted, but monitoring tools wouldn’t be able to spot them.
Rare but disgusting
Earlier versions of Stealarium aren’t much different from your garden-variety infostealer – they steal login credentials, browser cookies, credit card data (via web form scraping) session tokens from gaming services like Steam, crypto wallet data, and all sorts of sensitive files. This new variant, however, can also detect when the victim opens a tab with pornographic content, when it will grab screenshots, and bring up the webcam for a few snapshots.
“While this feature is not novel among cybercrime malware, it is not often observed,” Proofpoint said.
TA2715 and TA2536 are not popular, large, or sophisticated threat actors. Previous reports do not link it to any nation-state, and they haven’t been observed engaging in ransomware, or extorting victims for seven-figure ransoms. Therefore, it is possible that these criminals are more inclined towards targeting people of no particular interest to the general public, who would also feel shame reporting such an incident.
The best way to defend against these attacks is to deploy a strong antivirus program, and think before clicking any links or email attachments.
Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!
You might also like
Two low-level cybercrime groups use Stealerium to extort victims watching porn The malware takes screenshots and webcam photos, then demands payment It spreads via phishing and mostly targets individuals and small industries Cybercriminals have begun using spyware to take screenshots and webcam snapshots of people watching pornography on their computers,…
Recent Posts
- Steam Machine and Steam Frame are coming ‘this summer’
- Valve says it’s ready to launch the Steam Machine this summer
- Best Buy slashes up to $400 off Apple tech in a limited-time sale — get AirPods, MacBooks, iPads and Apple Watches from $99.99
- The Instagram Plus subscription has officially launched
- Cyberdecks used to look like little laptops, but now they’re getting more personal
Archives
- June 2026
- May 2026
- April 2026
- March 2026
- February 2026
- January 2026
- December 2025
- November 2025
- October 2025
- September 2025
- August 2025
- July 2025
- June 2025
- May 2025
- April 2025
- March 2025
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023