December 16, 2022
Sin comentarios
The introduced malware is Qakbot, a trojan designed to steal passwords. The distribution method was discovered by Cisco Talos, which identified it in fraudulent email messages containing an SVG image.
When the victim opens the attached file, which is a web page that contains said infected image, The hidden code is activated and creates a file that asks the user for confirmation to save it. This file has password protection that, when entered, installs the malware.
Researchers who have analyzed this malware recommend having antivirus installed, in addition to taking extreme precautions with attachments, since this type of email allows bypassing filters.
Fountain: The Hacker News