Windows SmartScreen flaw exploited to drop Phemedrone malware
When opening URL files, a Phemedrone information-stealing malware campaign exploits a Microsoft Defender SmartScreen vulnerability (CVE-2023-36025) to bypass Windows security prompts.
Phemedrone is a new open-source data-stealer malware that steals information from web browsers, cryptocurrency wallets, and software such as Discord, Steam, and Telegram. This information is then returned to the attackers for use in future harmful actions or sold to other threat actors.
CVE-2023-36025, the Microsoft Defender hole exploited in the Phemedrone campaign, was corrected during the November 2023 Patch Tuesday, when it was noted as being exploited read more Windows SmartScreen flaw exploited to drop Phemedrone malware.
Get up to date on the latest cybersecurity news and enhance your knowled...

