Tag: Windows SmartScreen

New Mispadu Banking Trojan Exploiting Windows SmartScreen Flaw
News

New Mispadu Banking Trojan Exploiting Windows SmartScreen Flaw

The Mispadu banking Trojan's threat actors are the most recent to compromise victims in Mexico by taking advantage of a Windows SmartScreen security bypass vulnerability that has since been fixed. The malware used in the attacks is a new strain that was first discovered in 2019, according to a study released last week by Palo Alto Networks Unit 42. Mispadu is a Delphi-based information thief that is reported to specifically infect victims in the Latin American (LATAM) region. It is distributed through phishing emails. Metabase Q disclosed in March 2023 that, since August 2022, Mispadu spam campaigns have acquired read more New Mispadu Banking Trojan Exploiting Windows SmartScreen Flaw. Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity wit...
Windows SmartScreen flaw exploited to drop Phemedrone malware
News

Windows SmartScreen flaw exploited to drop Phemedrone malware

When opening URL files, a Phemedrone information-stealing malware campaign exploits a Microsoft Defender SmartScreen vulnerability (CVE-2023-36025) to bypass Windows security prompts. Phemedrone is a new open-source data-stealer malware that steals information from web browsers, cryptocurrency wallets, and software such as Discord, Steam, and Telegram. This information is then returned to the attackers for use in future harmful actions or sold to other threat actors. CVE-2023-36025, the Microsoft Defender hole exploited in the Phemedrone campaign, was corrected during the November 2023 Patch Tuesday, when it was noted as being exploited read more Windows SmartScreen flaw exploited to drop Phemedrone malware. Get up to date on the latest cybersecurity news and enhance your knowled...