"Windows SmartScreen Flaw Exploited by New Mispadu Banking Trojan"

1 min read
Source: The Hacker News
"Windows SmartScreen Flaw Exploited by New Mispadu Banking Trojan"
Photo: The Hacker News
TL;DR Summary

The Mispadu banking Trojan has been observed exploiting a now-patched Windows SmartScreen security flaw to target users in Mexico, with phishing emails being the primary method of propagation. This Delphi-based malware has been active in the Latin American region, harvesting over 90,000 bank account credentials since August 2022. The exploit involves the use of rogue internet shortcut files within fake ZIP archives to bypass SmartScreen warnings, allowing the malware to selectively target victims and establish contact with a command-and-control server for data exfiltration. Additionally, the article highlights the use of DICELOADER by the Russian e-crime group FIN7 and the discovery of new malicious cryptocurrency mining campaigns by AhnLab.

Share this article

Reading Insights

Total Reads

0

Unique Readers

0

Time Saved

2 min

vs 3 min read

Condensed

78%

488108 words

Want the full story? Read the original article

Read on The Hacker News