The Dridex trojan has adopted a new attack methodology that it is using to target high-value customers of several UK banks. IBM’s Limor Kessem, a cybersecurity evangelist at IBM, has written a blog post in which she describes the attack campaign first detected in early January. The infection process begins when unsuspecting users open up a Microsoft Office email attachment purporting to be an invoice. That file contains malicious macros which, when enabled, launches the exploit and installs DrideX on the infected machine.”]

