Hacker News new | ask | show | jobs
by infotapeworm 785 days ago
Many such cases. Google is responsible for a wide variety of what security researchers refer to as "malvertising."

This often leads to intrusions/breaches. The initial payload drops, the actor deploys a C2 framework (often Cobalt Strike), pivots laterally, then drops ransomware binaries for encryption. If I had to put a number on the amount of intrusions caused by Google PPC ads, it would be an upwards of 500.

This has been a growing problem since last November, and Google is effectively taking its cut from malware distributors and aiding/abetting organized crime.