The latest method of spreading Locky ransomware was discovered by accident when an astute user contacted security researcher Bart Blaze. The user noticed that his Facebook Messenger service had loaded a file to the account without consent or any intervention whatsoever. The downloaded file, Blaze found, was a scalable vector graphic. A browser would then run the JavaScript and end up at a fake YouTube site. If installed, it propagates the malware via Facebook Messenger using another poisoned image file. Both Facebook and Google have been notified of the issue but have yet to respond.”]
Source: https://securityintelligence.com/news/locky-ransomware-spread-via-facebook-messenger/

