APT-C-60 Group Exploit WPS Office Flaw to Deploy SpyGlace Backdoor
The zero-day exploitation of a now-patched major remote code execution bug in Kingsoft WPS Office to install a custom backdoor called SpyGlace has been connected to cyber espionage aligned with South Korea.
Cybersecurity companies ESET and DBAPPSecurity have identified a threat actor known as APT-C-60 as the source of the activity. It has been discovered that the attacks infect people in China and East Asia with malware.
CVE-2024-7262 (CVSS score: 9.3) is the security vulnerability in question, which is caused by improper validation of file paths supplied by users. This vulnerability basically enables remote code execution by an adversary who uploads any Windows library read more about APT-C-60 Group Exploit WPS Office Flaw to Deploy SpyGlace Backdoor.
Get up to date on the lates...

