New Trojan Targets Monster.com Users for Identity Theft

CUPERTINO, Calif. — Online job hunters using the Internet to seek out a new career direction should take added precautions if posting information to Monster.com is part of their strategy, according to information uncovered by security software vendor Symantec this week.

Symantec’s researchers have identified a new Trojan being employed to target users of Monster.com for identity theft, according to the company’s security response blog.

The Trojan in question has been dubbed Infostealer.Monstres, and although the exploit has been characterized by Symantec as “very low” risk, the amount of data already collected by the attackers behind the Trojan already is prodigious.

During their investigation, Symantec’s researchers noticed that the Trojan was uploading data to a remote server. When the team accessed the remote server, they found “over 1.6 million entries with personal information belonging to several hundred thousand people,” according to a post made to the security response blog by Symantec’s Amado Hidalgo.

Surprised that such a low-profile Trojan was used to attack so many people, the Symantec team dug around to discover how the data was obtained.

After discovering that connections were only being made to the sub-domains hiring.monster.com and recruiter.monster.com, the researchers concluded that the Trojan “appears to be using the (probably stolen) credentials of a number of recruiters to login to the website and perform searches for resumes of candidates located in certain countries or working in certain fields.”

According to Symantec, the Trojan functions by sending HTTP commands that navigate the Managed Folders section of the site. The Trojan then parses the output from a pop-up window that contains the profiles of the candidates that match the compromised recruiters’ saved searches.

Symantec’s researchers found that a wide range of personal details of the job candidates have been accessed, and then uploaded to the remote server that is controlled by the attackers. The personal details include the name, surname, email address, country, home address, work/mobile/home phone numbers and resume ID, according to the security response blog.

“Such a large database of highly personal information is a spammer’s dream,” Hidalgo wrote. “In fact, we found the Trojan can be instructed to send spam email using a mail template downloadable from the command & control server.”

Symantec has informed Monster.com of the compromised recruiter accounts so that the accounts can be disabled, Hidalgo said. Symantec also suggested that to reduce the risk of identity theft, users should limit the contact information they post on job-hunting sites, and never disclose information such as Social Security numbers, passport or driver’s license numbers, bank account information or other sensitive details.

For more information on the Infostealer.Monstres Trojan, see the Symantec advisory concerning the exploit.

Copyright © 2026 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Chaturbate Launches Year-Long 15th Anniversary Campaign

Chaturbate has launched "CB15," a year-long campaign to celebrate the company's 15th anniversary.

AV Bulletin: Loopholes and Lawsuits

This roundup provides an update on the latest news and developments on the age verification front as it impacts the adult industry.

Utah 'Porn Tax' Bill Will Head to Governor's Desk

A bill that would tax adult websites and make them liable if minors circumvent geolocation has passed the Utah state legislature and will soon head to the office of Gov. Spencer Cox for signature or veto.

Flirt4Free Co-Founder Gregory Clayman Passes Away

Gregory Clayman, a pioneering figure in the live cam sector and cofounder of the long-running webcam platform Flirt4Free, has passed away.

Pornhub to Restrict Access in Australia as AV Rules Take Effect

Pornhub parent company Aylo will restrict access to its free video-sharing platforms in Australia in response to new age verification regulations, the company confirmed Thursday.

ASACP Announces F2F as 1st Gold Sponsor

The Association of Sites Advocating Child Protection (ASACP) has announced Friends2Follow (F2F) has upgraded its sponsorship and become the organization’s first Gold Sponsor.

House Committee Approves Online Safety Bill With Federal AV Requirement

The U.S. House of Representatives Committee on Energy and Commerce on Thursday passed the Kids Internet and Digital Safety (KIDS) Act, which includes provisions to make age verification by adult websites federal law.

Segpay Adds 'Pay by Bank (UK)' Payment Solution

Segpay has added the Pay by Bank (UK) option to its direct payments solutions.

Creator Verification Platform 'VerifiedCollab' Launches

Performer Eli Thomas has launched VerifiedCollab, a verification platform for creators and producers.

House Committee to Weigh Online Safety Bill With Federal AV Requirement

The U.S. House of Representatives Committee on Energy and Commerce will meet Thursday to consider and potentially amend the Kids Internet and Digital Safety (KIDS) Act, which includes provisions to make age verification by adult websites federal law.

Show More