Rising Threat: LokiBot Malware Exploits Microsoft Word and GitHub Repos

1 min read
Source: The Hacker News
Rising Threat: LokiBot Malware Exploits Microsoft Word and GitHub Repos
Photo: The Hacker News
TL;DR Summary

Cybercriminals are exploiting vulnerabilities in Microsoft Word to distribute LokiBot malware. The attacks use phishing lures in Word documents, taking advantage of known remote code execution flaws (CVE-2021-40444 and CVE-2022-30190). LokiBot is an information-stealing Trojan that primarily targets Windows systems, aiming to gather sensitive data. The malware is delivered through an HTML file that exploits the vulnerabilities and launches an injector module written in Visual Basic. LokiBot has the ability to log keystrokes, capture screenshots, steal login credentials, and extract data from cryptocurrency wallets. The attackers continuously update their methods to spread and infect systems.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

1 min

vs 2 min read

Condensed

74%

36695 words

Want the full story? Read the original article

Read on The Hacker News