"DarkMe Malware Exploits Microsoft Zero-Day Vulnerabilities"

1 min read
Source: The Hacker News
"DarkMe Malware Exploits Microsoft Zero-Day Vulnerabilities"
Photo: The Hacker News
TL;DR Summary

A zero-day vulnerability in Microsoft Defender SmartScreen, exploited by an advanced persistent threat actor known as Water Hydra, has been used to target financial market traders with the DarkMe malware. The flaw, CVE-2024-21412, allows the bypassing of security checks, enabling the delivery of the DarkMe trojan through a cleverly crafted internet shortcut file distributed via forex trading forums. This campaign highlights the increasing trend of cybercrime groups exploiting zero-day vulnerabilities, with the potential for such exploits to be incorporated into sophisticated attacks by nation-state hacking groups.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

2 min

vs 3 min read

Condensed

84%

52786 words

Want the full story? Read the original article

Read on The Hacker News