News

NCC warns Nigerians against TikTok challenge

The Nigerian Communications Commission’s Computer Security Incident Response Team (NCC-CSIRT) has warned Nigerians against taking part in the ‘Invisible Challenge’ on short-form video hosting service, TikTok, revealing that it exposes devices to information-stealing malware.

The NCC, in an advisory issued on Tuesday by its spokesperson, Reuben Muoka, said threat actors have taken advantage of the Invisible Challenge to disseminate an information-stealing malware known as the WASP (or W4SP) stealer.

The WASP stealer, which is high in probability with critical damage potential, is a persistent malware hosted on discord that its developer claim is undetectable.

The NCC stated: “The Invisible Challenge involves wrapping a somewhat transparent body contouring filter around a presumed naked individual. Attackers are uploading videos to TikTok with a link to software that they claim can reverse the filter’s effects.

READ ALSO: Meta threatens to remove news from Facebook

“Those who click on the link and attempt to download the software, known as ‘unfilter’, are infected with the WASP stealer. Suspended accounts had amassed over a million views after initially posting the videos with a link. Following the link leads to the “Space Unfilter” Discord server, which had 32,000 members at its peak but has since been removed by its creators.

“Successful installation will allow the malware to harvest keystrokes, screenshots, network activity, and other information from devices where it is installed. It may also covertly monitor user behaviour and harvest Personally Identifiable Information (PII), including names and passwords, keystrokes from emails, chat programs, websites visited, and financial activity. This malware may be capable of covertly collecting screenshots, video recordings, or the ability to activate any connected camera or microphone.”

It noted that some ways to forestall such an attack include “avoiding clicking on suspicious links, using anti-malware software on your devices, checking app tray and removing any apps that you do not remember installing or that are dormant and embracing healthy password hygiene practices such as using a password manager.”

The Star

Segun Ojo

Recent Posts

LaPRIGA 2024: Bolaji Abimbola named PR Practitioner of the Year

The Managing Director/Chief Executive Officer of Integrated Indigo Limited, Bolaji Abimbola, has been named PR…

7 hours ago

‘5,829 ASPs to DSPs’: PSC promotes 8,053 police officers

The Police Service Commission (PSC) has approved the promotion of 8,053 police officers in the…

9 hours ago

2024 Hajj: Uba Sani lauds Kaduna agency for swift airlift of pilgrims

Kaduna State Governor Uba Sani has commended the State Pilgrims Welfare Agency for its performance…

9 hours ago

Security, education top as Tinubu presents N49.7tn 2025 ‘restoration budget’

President Bola Tinubu, on Wednesday, December 18, 2024, presented a total budget of N49.7 trillion…

12 hours ago

Tinubu presents 2025 budget, says time for lamentation over

President Bola Tinubu has reassured Nigerians of the administration’s commitment to tackling the various challenges…

14 hours ago

Adeleke to pardon man sentenced to death for stealing fowl in Osun

Osun State Governor Ademola Adeleke has promised to pardon a resident of the state, Segun…

15 hours ago

This website uses cookies.