Gadget Page
No Result
View All Result
  • Home
  • Apps
  • Gadget Info
  • Gaming
PRICING
SUBSCRIBE
  • Home
  • Apps
  • Gadget Info
  • Gaming
No Result
View All Result
Gadget Page
No Result
View All Result
Home Uncategorized

State-sponsored hackers use Microsoft ‘Folina’ bugs to target entities in Europe and the United States

gadgetpage by gadgetpage
June 6, 2022
Reading Time: 4 mins read
0
State-sponsored hackers use Microsoft ‘Folina’ bugs to target entities in Europe and the United States

RELATED POSTS

Puedes descargar Age of Empires III gratis y legalmente

Vanessa Kirby will play Sue Storm in Fantastic Four

Tower of Fantasy: Einjähriges Jubiläum und großes Update 3.1 angekündigt


A suspected state-linked threat actor has been blamed for a new set of attacks using the Microsoft Office “Folina” vulnerability to target government agencies in Europe and the United States.

Enterprise security firm Proofpoint says it has blocked attempts to exploit the remote code execution error, which is being tracked at CVE-2022-30190 (CVSS score: 7.8). Less than 1,000 phishing messages were sent to the target, including a tempting document.

“The campaign has been disguised as a pay rise and used an RTF with an exploitation payload downloaded from 45.76.53.[.]253, “Company Says In a series of tweets.

Cyber ​​security

The payload, which comes in the form of a PowerShell script, is base64-encoded and acts as a downloader to retrieve a second PowerShell script from a remote server called “Vendor-Notification”.[.]Show live. “

“This script checks for virtualization, steals data from local browsers, mail clients and file services, manages machine icons and then zips for excel.[tration] From 45.77.156[.]179, “the company added.

The phishing campaign was not affiliated with any previously known group, but said it was mounted by a nation-state actor based on the specificity of the targeting and the broad-based reconnaissance capabilities of the PowerShell payload.

The development follows the active exploitation efforts of a Chinese threat actor tracked as TA413 for supplying armed zip archives with malware-rigged Microsoft Word documents.

Cyber ​​security

The Follina vulnerability, which left the “ms-msdt:” protocol URI scheme to remotely control the target device, remained untouched, prompting Microsoft customers to disable the protocol to prevent attack vectors.

Sherrod Digrippo, vice president of threat research, said in a statement shared with The Hacker News:

“The massive restart, driven by the second PowerShell script, shows an actor interested in a variety of software on a target computer. This, combined with the strict targets of the European government and the local US government, makes us suspect that the campaign is linked to a state. Nexus.”





Source link

Share this:

  • Twitter
  • Facebook
Tags: computer securitycyber attackcyber newscyber security newscyber security news todayCyber ​​Security UpdateCyber ​​updatedata breachhacker newshacking newshow to hackinformation securitynetwork securityransomware malwareSoftware weakness
ShareTweetPin
gadgetpage

gadgetpage

Related Posts

Puedes descargar Age of Empires III gratis y legalmente
Uncategorized

Puedes descargar Age of Empires III gratis y legalmente

August 4, 2023
Vanessa Kirby will play Sue Storm in Fantastic Four
Uncategorized

Vanessa Kirby will play Sue Storm in Fantastic Four

August 4, 2023
Tower of Fantasy: Einjähriges Jubiläum und großes Update 3.1 angekündigt
Uncategorized

Tower of Fantasy: Einjähriges Jubiläum und großes Update 3.1 angekündigt

August 3, 2023
OLED-Roadmap 2024: Monitorhersteller gibt Einblicke
Uncategorized

OLED-Roadmap 2024: Monitorhersteller gibt Einblicke

August 2, 2023
Samsung Galaxy SmartTag 2: Zertifizierung zeigt neues Design – Allround-PC.com
Uncategorized

Samsung Galaxy SmartTag 2: Zertifizierung zeigt neues Design – Allround-PC.com

August 2, 2023
Samsung Galaxy S23 FE: Neue Details zur Kamera
Uncategorized

Samsung Galaxy S23 FE: Neue Details zur Kamera

August 2, 2023
Next Post
Huawei envisions the future 2-in-1 convertible: a detachable notebook that turns into a patent tablet

Huawei envisions the future 2-in-1 convertible: a detachable notebook that turns into a patent tablet

Considerations for web application remedy testing |  Acunetics

Considerations for web application remedy testing | Acunetics

Recommended Stories

Corsair Capital Acquires Majority Stake in IDIQ® – IdentityIQ

Corsair Capital Acquires Majority Stake in IDIQ® – IdentityIQ

December 16, 2020
AMD’s sub-$100 US Ryzen CPU switches to a 16GB AI GPU and delivers strong performance

AMD’s sub-$100 US Ryzen CPU switches to a 16GB AI GPU and delivers strong performance

August 21, 2023
It’s probably on the Samsung Galaxy S23+

It’s probably on the Samsung Galaxy S23+

December 15, 2022

Popular Stories

  • Xiaomi 13T is said to have a flagship camera on board – macro rubbish thrown away

    Xiaomi 13T is said to have a flagship camera on board – macro rubbish thrown away

    0 shares
    Share 0 Tweet 0
  • Gamescom 2023: Asus Republic of Gamers event with new products and contests

    0 shares
    Share 0 Tweet 0
  • Horizon Forbidden West, new major event: all accounts

    0 shares
    Share 0 Tweet 0
  • iPhone 12 mini Review | Trusted Reviews

    0 shares
    Share 0 Tweet 0
  • Sony Crystal LED Display System – LED Wall for Film Sets | CineD

    0 shares
    Share 0 Tweet 0
  • Home
  • Apps
  • Gadget Info
  • Gaming
Call us: +1 234 JEG THEME

© 2023 JNews - Premium WordPress news & magazine theme by Jegtheme.

No Result
View All Result
  • Home
  • Apps
  • Gadget Info
  • Gaming

© 2023 JNews - Premium WordPress news & magazine theme by Jegtheme.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?