Tag: malicious

ChatGPT Used to Develop New Malicious Tools
Availability, Resources, Risk, Security

ChatGPT Used to Develop New Malicious Tools

Cybercriminals have continued to create new malicious tools leveraging OpenAI's ChatGPT, such as info stealers, multi-layer encryption tools, and scripts for dark web marketplaces. The information was released last Friday in a fresh advisory from Check Point Research (CPR) experts. The organization informed Infosecurity via email that "threat actors are producing info stealers, encryption tools, and aiding fraud activity" on underground hacking forums.In specifically, three recent findings involving the use of ChatGPT for illicit purposes were found by CPR. The first one refers to reproducing malware strains and tactics outlined in research publications and writings about prevalent malware. It was discovered in a dark web forum on December 29, 2022, read the complete article Cha...
APT Hackers Turn to Malicious Excel Add-ins as Initial Intrusion Vector
Reputation, Resources, Risk, Security

APT Hackers Turn to Malicious Excel Add-ins as Initial Intrusion Vector

Since Microsoft decided to by default disable Visual Basic for Applications (VBA) macros for Office files received from the internet, threat actors have been forced to adapt their attack chains. The use of Excel add-in (.XLL) files as an initial attack vector by advanced persistent threat (APT) actors and commodity malware families is now on the rise, according to Cisco Talos. Weaponized Office files distributed through spear-phishing emails and other social engineering assaults continue to be one of the most popular entry points for criminal organizations seeking to run harmful code. Typically, these documents ask the victims to enable macros in order to view seemingly innocent material, only to trigger the malware's stealthy background execution read the complete article APT Ha...