Void Banshee APT Exploits Microsoft MHTML Flaw to Spread Atlantida Stealer
An information stealer known as Atlantida has been reported to be delivered by the advanced persistent threat (APT) group Void Banshee, which is taking use of a recently discovered security hole in the Microsoft MHTML browser engine as a zero-day.
The vulnerability, tracked as CVE-2024-38112, was utilized as part of a multi-stage attack chain utilizing specially constructed internet shortcut (URL) files, according to cybersecurity firm Trend Micro, which noticed the activity in mid-May 2024.
Security researchers Peter Girnus and Aliakbar Zahravi stated that "variations of the Atlantida campaign have been highly active throughout 2024 and have evolved to use CVE-2024-38112 as part of Void Banshee infection chains." "APT groups like Void Banshee pose a serious threat to companies arou...

