Tuesday, April 8, 2025
HomeComputer SecurityWindows Users Beware! - More than 60% of Malicious Ads Targeting Windows...

Windows Users Beware! – More than 60% of Malicious Ads Targeting Windows Computer Systems

Published on

SIEM as a Service

Follow Us on Google News

A new report shows that 61% of malicious ads on the Internet targeting Windows computers to infect with malware or to steal the information.

The malicious ads act as a platform to distribute malware, by attracting users and redirect them to malicious websites which results in downloading the malware.

Windows as Prime Target

According to Devcon observation between July 11 – November 22, 2019, 61% of the malicious ad campaigns primarily targeting the Windows operating system, when compared to other popular operating systems.

- Advertisement - Google News

Next to the Windows operating system, the second most targeted operating system in ChromeOS which accounts for 22.5%, next is MacOS at 10.5% and the least targeted device is Apple iPads at 0.8%.

malicious ads
Malicious Ads Source: DEVCON

In another report published by Confiant, the malicious ads increased from Q2 to Q3. The Q3 attacks are targeting desktop computers, mainly running Windows and they are attacking users mainly in Italy, Spain, and Scandinavia.

The Windows operating is the most used one, it’s popularity let malware authors invest more time and resource to develop a more sophisticated malware. Wannacry is an example of it.

We can’t assume Linux OS is the most secured one, nowadays attackers targeting Linux servers also to install various malware, most particularly coin miner scripts.

With Q3 three different variations of ads observed

Malicious ad – Ads with Javascript that force redirection to another website.
In-Banner Video (IBV) ad – Serving Video ads with banner placements.
Low-Quality ad – Noisy ads based on user location

Researchers believe that “nearly 1 in every 250 impressions is dangerous or disruptive to the end-user, which equates to 4 billion malicious or disruptive impressions a month across the entire industry.”

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity and hacking news updates.

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Kellogg’s Servers Breached, Hackers Steal Sensitive Data

WK Kellogg Co., one of the world's leading cereal and snack manufacturers, has fallen...

Xanthorox AI: New Automated Hacking Tool Surfaces on Hacker Forums

A new malicious AI tool, Xanthorox AI, has emerged on underground hacker forums.Dubbed the "Killer...

Apollo Router Vulnerability Enables Resource Exhaustion via Optimization Bypass

A critical vulnerability (CVE-2025-32032) has been identified in Apollo Router, a widely used GraphQL...

WhatsApp for Windows Flaw Allowed Remote Code Execution via File Attachments

A critical vulnerability identified as CVE-2025-30401 was recently disclosed, highlighting a major security flaw in WhatsApp...

Supply Chain Attack Prevention

Free Webinar - Supply Chain Attack Prevention

Recent attacks like Polyfill[.]io show how compromised third-party components become backdoors for hackers. PCI DSS 4.0’s Requirement 6.4.3 mandates stricter browser script controls, while Requirement 12.8 focuses on securing third-party providers.

Join Vivekanand Gopalan (VP of Products – Indusface) and Phani Deepak Akella (VP of Marketing – Indusface) as they break down these compliance requirements and share strategies to protect your applications from supply chain attacks.

Discussion points

Meeting PCI DSS 4.0 mandates.
Blocking malicious components and unauthorized JavaScript execution.
PIdentifying attack surfaces from third-party dependencies.
Preventing man-in-the-browser attacks with proactive monitoring.

More like this

Threat Actors Exploit Toll Payment Services in Widespread Hacking Campaign

In a sophisticated cybercrime operation, the Smishing Triad, a China-based group, has been identified...

Everest Ransomware Gang’s Leak Site Hacked and Defaced

TechCrunch has uncovered a concerning development in consumer-grade spyware: a stealthy Android monitoring app...

ToddyCat Attackers Exploited ESET Command Line Scanner Vulnerability to Conceal Their Tool

In a sophisticated cyberattack, the notorious ToddyCat APT group utilized a previously unknown vulnerability...