From PDFs to Payload: Bogus Adobe Acrobat Reader Installers Distribute Byakugan Malware
Byakugan is a new multifunctional malware that is being distributed using fake Adobe Acrobat Reader installs.
The attack begins with a Portuguese-language PDF file that, when opened, displays a hazy image and prompts the user to click a link to download the Reader program in order to access the information.
Fortinet FortiGuard Labs states that upon accessing the URL, an installer named "Reader_Install_Setup.exe" is downloaded and executed, initiating the infection sequence. The AhnLab Security Intelligence Center (ASEC) initially made campaign details public last month.
The attack chain installs BluetoothDiagnosticUtil.dll, a malicious dynamic-link library (DLL) file, by using methods such as DLL hijacking and Windows User Access Control (UAC) bypass read more From PDFs to Payloa...

