"DarkGate Malware Exploits Windows SmartScreen Flaw in Zero-Day Attack"

1 min read
Source: BleepingComputer
"DarkGate Malware Exploits Windows SmartScreen Flaw in Zero-Day Attack"
Photo: BleepingComputer
TL;DR Summary

DarkGate malware operators are exploiting a now-fixed Windows Defender SmartScreen vulnerability to automatically install fake software installers and drop their malware onto targeted systems. The flaw, tracked as CVE-2024-21412, allows specially crafted downloaded files to bypass security warnings. The attack involves a complex and multi-step infection chain, utilizing malicious emails, open redirects, Windows shortcuts, and MSI files masquerading as legitimate software. Trend Micro has detailed the DarkGate infection chain and published indicators of compromise (IoCs) for this campaign, urging users to apply Microsoft's February 2024 Patch Tuesday update to mitigate the risk.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

2 min

vs 3 min read

Condensed

82%

50892 words

Want the full story? Read the original article

Read on BleepingComputer