{"id":124947,"date":"2026-06-03T10:58:30","date_gmt":"2026-06-03T03:58:30","guid":{"rendered":"https:\/\/cdi.wu.ac.th\/?p=124947"},"modified":"2026-06-03T10:58:30","modified_gmt":"2026-06-03T03:58:30","slug":"cybersecurity-alert-beware-of-session-stealing-malware-that-bypasses-otp-and-mfa-authentication","status":"publish","type":"post","link":"https:\/\/cdi.wu.ac.th\/?p=124947&lang=en","title":{"rendered":"Cybersecurity Alert: Beware of Session-Stealing Malware That Bypasses OTP and MFA Authentication"},"content":{"rendered":"<p>&nbsp;<\/p>\n<p>The Center for Digital Innovation (CDI), Walailak University, would like to alert students, faculty members, and staff to a rapidly emerging cybersecurity threat involving <strong>Infostealer malware<\/strong> capable of stealing session tokens from users&#8217; devices. This attack enables cybercriminals to impersonate legitimate users and gain unauthorized access to online services without requiring One-Time Passwords (OTP) or Multi-Factor Authentication (MFA) verification.<\/p>\n<p>While strong passwords and MFA remain essential security measures, attackers have developed sophisticated techniques that target users&#8217; devices directly. These attacks are commonly delivered through phishing emails, malicious links, infected attachments, pirated software, or untrusted browser extensions.<\/p>\n<p>Once a victim opens a malicious file or clicks a harmful link, the malware silently extracts browser cookies and session tokens. These tokens are used by websites and applications to recognize authenticated users who have already completed the login and MFA process. By stealing these tokens, attackers can access user accounts and university systems without triggering any OTP request or security notification.<\/p>\n<p>To reduce the risk of compromise, CDI strongly recommends the following security practices:<\/p>\n<p>\u2022 Avoid downloading or installing cracked software, pirated applications, games, or untrusted browser extensions.<\/p>\n<p>\u2022 Exercise caution when opening emails, attachments, or links, especially messages that request immediate action, password resets, or account verification.<\/p>\n<p>\u2022 Access university services only through official websites and type the URL directly into your browser whenever possible.<\/p>\n<p>\u2022 Always sign out of university systems after use, particularly when using shared or public computers.<\/p>\n<p>\u2022 Regularly clear browser cookies and browsing data.<\/p>\n<p>\u2022 Keep your operating system, web browser, and antivirus software updated with the latest security patches.<\/p>\n<p>If you suspect that you have clicked a malicious link, downloaded a suspicious file, or noticed unusual activity on your university account, please change your password immediately and contact the CDT Helpdesk as soon as possible for assistance.<\/p>\n<p><strong>CDT Helpdesk<\/strong><br \/>\nTel: +66 7567 3400<br \/>\nInternal: 73400<br \/>\nFacebook: wu.cdi<\/p>\n<p>The Center for Digital Innovation encourages all members of the university community to remain vigilant and stay informed about cybersecurity threats. By practicing good cyber hygiene and following security recommendations, we can work together to protect university information systems and reduce the risk of cyberattacks.<\/p>\n<p><strong>Center for Digital Innovation (CDI)<\/strong><br \/>\n<strong>Walailak University<\/strong><\/p>\n<p><img fetchpriority=\"high\" decoding=\"async\" class=\"alignnone wp-image-124948 size-large\" src=\"https:\/\/cdi.wu.ac.th\/wp-content\/uploads\/2026\/06\/ChatGPT-Image-3-\u0e21\u0e34.\u0e22.-2569-10_53_55-1024x512.png\" alt=\"\" width=\"1024\" height=\"512\" srcset=\"https:\/\/cdi.wu.ac.th\/wp-content\/uploads\/2026\/06\/ChatGPT-Image-3-\u0e21\u0e34.\u0e22.-2569-10_53_55-1024x512.png 1024w, https:\/\/cdi.wu.ac.th\/wp-content\/uploads\/2026\/06\/ChatGPT-Image-3-\u0e21\u0e34.\u0e22.-2569-10_53_55-300x150.png 300w, https:\/\/cdi.wu.ac.th\/wp-content\/uploads\/2026\/06\/ChatGPT-Image-3-\u0e21\u0e34.\u0e22.-2569-10_53_55-768x384.png 768w, https:\/\/cdi.wu.ac.th\/wp-content\/uploads\/2026\/06\/ChatGPT-Image-3-\u0e21\u0e34.\u0e22.-2569-10_53_55-1536x768.png 1536w, https:\/\/cdi.wu.ac.th\/wp-content\/uploads\/2026\/06\/ChatGPT-Image-3-\u0e21\u0e34.\u0e22.-2569-10_53_55.png 1774w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&nbsp; The Center for Digital Innovation (CDI), Walailak University, would like to alert students, faculty members, and staff to a rapidly emerging cybersecurity threat involving Infostealer malware capable of stealing session tokens from users&#8217; devices. This attack enables cybercriminals to impersonate legitimate users and gain unauthorized access to online services without requiring One-Time Passwords (OTP) [&hellip;]<\/p>\n","protected":false},"author":5,"featured_media":124948,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"elementor_header_footer","format":"standard","meta":{"itsec_x_frame_options":"","_exactmetrics_skip_tracking":false,"_exactmetrics_sitenote_active":false,"_exactmetrics_sitenote_note":"","_exactmetrics_sitenote_category":0,"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"default","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"set","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"_jetpack_memberships_contains_paid_content":false,"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","default_image_id":0,"font":"","enabled":false},"version":2}},"categories":[3],"tags":[],"class_list":["post-124947","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news"],"jetpack_publicize_connections":[],"jetpack_featured_media_url":"https:\/\/cdi.wu.ac.th\/wp-content\/uploads\/2026\/06\/ChatGPT-Image-3-\u0e21\u0e34.\u0e22.-2569-10_53_55.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/cdi.wu.ac.th\/index.php?rest_route=\/wp\/v2\/posts\/124947","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cdi.wu.ac.th\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cdi.wu.ac.th\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cdi.wu.ac.th\/index.php?rest_route=\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/cdi.wu.ac.th\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=124947"}],"version-history":[{"count":1,"href":"https:\/\/cdi.wu.ac.th\/index.php?rest_route=\/wp\/v2\/posts\/124947\/revisions"}],"predecessor-version":[{"id":124949,"href":"https:\/\/cdi.wu.ac.th\/index.php?rest_route=\/wp\/v2\/posts\/124947\/revisions\/124949"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cdi.wu.ac.th\/index.php?rest_route=\/wp\/v2\/media\/124948"}],"wp:attachment":[{"href":"https:\/\/cdi.wu.ac.th\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=124947"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cdi.wu.ac.th\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=124947"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cdi.wu.ac.th\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=124947"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}