Hackers are using deceptive Windows 11 update advertisements on Facebook to steal assets from cryptocurrency users. According to ChainCatcher, these ads feature professional Microsoft branding and direct users to a cloned Microsoft website, where malicious software is downloaded.
The malware installs a framework called 'LunarApplication' on victims' computers, designed to steal cryptocurrency wallet seed phrases, login credentials, and other sensitive information. Hackers employ geofencing technology to avoid detection by data center IP addresses and automated scanners.