Get a Pentest and security assessment of your IT network.

News

New alleged MuddyWater attack downloads a PowerShell script from GitHub

Security expert spotted a new piece of malware that leverages weaponized Word documents to download a PowerShell script from GitHub. Malware uses steganography to hide the malicious code in the image. Once decoded, the script reveals a Cobalt Strike payload that allows attackers to deploy beacons on compromised Windows machines. The code uses an EICAR string to evade the detection by tricking the defense into thinking that the code is used as part of a security test. The payload receives instructions from the C2 via a WinINet module.”]

Source: https://securityaffairs.co/wordpress/112972/hacking/muddywater-attack-github-imgur.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

SEA has stolen invoices that shows Microsoft charges FBI for user data

News

Greek police arrested a man running the BTC-e Bitcoin exchange to launder more than US$4bn worth of the Bitcoin