Blog | G5 Cyber Security

New backdoor malware ‘KeyBoy’ used in targeted attacks in Asia, researchers say

Security firm Rapid7 says users from Vietnam, India, China, Taiwan and possibly other countries were targeted as part of an attack campaign that uses Microsoft Word documents rigged with exploits in order to install a backdoor program that allows attackers to steal information. The documents were rigged to exploit known vulnerabilities that affect unpatched installations of Microsoft Office 2003, 2007 and 2010. The malware registers a new Windows service called MdAdum that loads a malicious DLL (Dynamic Library Link) file called CREDRIVER.dll.”]

Source: https://www.csoonline.com/article/2133552/new-backdoor-malware—39-keyboy–39–used-in-targeted-attacks-in-asia–researche.html

Exit mobile version