Ready to update?

Issue 4 2021 News & Events

Microsoft has officially introduced a new version of its Windows operating system (OS), Windows 11, which will roll out to PC owners later this year. However, as the OS is now available for download and early adoption, Kaspersky has found the update is already being used by cybercriminals to distribute malware under the guise of Microsoft's new operating system.

To gain more insight into how fraudsters are taking advantage of impatient Windows users, Kaspersky researchers analysed malicious files appearing to be the Windows 11 update. During just the first month of the new OS release, Kaspersky products detected and prevented 850 attempts to infect users through files with various threats disguised as Windows 11.


An example of a fake Windows 11 installer.

Kaspersky experts also highlighted the diversity of the threat landscape. They uncovered relatively harmless downloaders and adware, which Kaspersky solutions classify as not-a-virus, as well as fully-fledged Trojans, backdoors and stealers aiming to collect user’s secrets like saved passwords or cookies from browsers.

For instance, the company’s researchers found one malicious file, with a size of 1,75 GB, so that the user thinks that it could really be an operating system. It contains a lot of useless data that is not used in any way during the installation. If a user opens this file, the installer will start, which looks like a normal Windows installation wizard. Its main purpose is to download and run a second installer, which in turn sets up adware, potentially unwanted apps or other types of malware on the system. Most interestingly, in this case the user gives permission for installing all of that themselves.

“The new Windows 11 operating system is a huge release, which attracts the interest of many users and tech enthusiasts. Understanding this demand, fraudsters have quickly adapted, spreading various forms of malware disguised as the new operating system. By getting too excited to experience the new OS, users are less likely to pay attention to the process and may download files from third-party sources – which is something that we advise to never do,” comments Anton V. Ivanov, a security expert at Kaspersky.

To avoid downloading malicious files mimicking Windows 11, Kaspersky recommends that you should:

Be sceptical about news or generous offers for the new operating system.

• Always check the authenticity of the websites you visit.

• Only download operating systems from official stores.

• Use a reliable security solution.

Find out more at www.kaspersky.co.za




Share this article:
Share via emailShare via LinkedInPrint this page



Further reading:

Highest increase in global cyberattacks in two years
Information Security News & Events
Check Point Global Research released new data on Q2 2024 cyber-attack trends, noting a 30% global increase in Q2 2024, with Africa experiencing the highest average weekly per organisation.

Read more...
Phishing attacks through SVG image files
Kaspersky News & Events Information Security
Kaspersky has detected a new trend: attackers are distributing phishing emails to individual and corporate users with attachments in SVG (Scalable Vector Graphics) files, a format commonly used for storing images.

Read more...
Fully-integrated browser AI
News & Events
Opera Mini now provides all its smartphone users with its own free built-in browser AI, Aria, including AI chat, Ask Aria and image generation. According to an Opera survey, 80% of South Africans want AI tools integrated into their browser.

Read more...
Amendments to the Private Security Industry Regulations
Technews Publishing Agriculture (Industry) News & Events Associations
SANSEA, SASA, National Security Forum, CEO, TAPSOSA, and LASA oppose recently published Amendments to the Private Security Industry Regulations regarding firearms.

Read more...
Local innovation driving excellence in FM
Securex South Africa News & Events
As organisations seek cost-effective, sustainable, and high-quality solutions, home-grown facilities management innovation is proving to be a critical driver of operational efficiency and long-term success.

Read more...
PIV-ready High Sec Controller 7000
News & Events
Gallagher Security announced the release of the latest addition to its controller product range; the High Sec Controller 7000, which incorporates all the core functions of the C7000 Standard variant released less than 18 months ago.

Read more...
The impact of GenAI on cybersecurity
Sophos News & Events Information Security
Sophos survey finds that 89% of IT leaders worry GenAI flaws could negatively impact their organisation’s cybersecurity strategies, with 87% of respondents stating they were concerned about a resulting lack of cybersecurity accountability.

Read more...
Lack of optimism for African economy
News & Events
African Leadership University publishes the 2025 Africa Workforce Readiness Survey, which shows that only 21% of South African employers are optimistic about the future of the country’s economy, the lowest of any country polled.

Read more...
From the editor's desk: What’s a trillion between friends?
Technews Publishing News & Events
Back in the bad old days of 2015, some (who didn’t want to take the blame for coming up with that number) estimated the amount of money lost to corruption by the South African government to be around ...

Read more...
Closing physical security loopholes
Securex South Africa News & Events
Relying on outdated physical security measures can expose businesses and facilities to threats in today’s fast-evolving security landscape. Fortunately, advances in security technology are helping organisations stay ahead of threats by closing critical security gaps.

Read more...