Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    US foreign policy reduced to an afterthought | Politics

    February 8, 2023

    Google’s New AI-Powered Features: Search Just Got Smarter

    February 8, 2023

    A Record Number of Americans Say They’re Worse Off Financially Under Biden – Most in Nearly 4 Decades

    February 8, 2023
    Facebook Twitter Instagram
    Facebook Twitter Instagram
    EasyDailyCrypto – Today Crypto | Bitcoin | Global World News
    Button
    • Home
    • Features
      • Contact
    • Crypto
    • Politics

      A Record Number of Americans Say They’re Worse Off Financially Under Biden – Most in Nearly 4 Decades

      February 8, 2023

      George Santos Is Such A Cancer That He Even Caused Mitt Romney To Blow Up

      February 8, 2023

      Pennsylvania Democrats Sweep 3 Special Elections And Take Control Of State House

      February 8, 2023

      Elon Musk Exposes Little Known State Department Agency as ‘Worst Offender in US Government Censorship’

      February 8, 2023

      American CEOs Ditching Previous Strategy of Jumping Onto Every Single Tragedy

      February 8, 2023
    • Technology
      1. Crypto
      2. Politics
      3. Business
      4. Lifestyle
      5. View All

      SEC To Step Up Probe On Firms And Brokers Pitching Crypto

      February 8, 2023

      BIS To Launch Stablecoin Monitoring Project Amid CBDC Development

      February 8, 2023

      Bitcoin Volume On Most Exchanges Plunges, Binance’s Hits ATH

      February 8, 2023

      CoWSwap Loses Over 550 BNB Tokens Through Solver Exploit

      February 8, 2023

      A Record Number of Americans Say They’re Worse Off Financially Under Biden – Most in Nearly 4 Decades

      February 8, 2023

      George Santos Is Such A Cancer That He Even Caused Mitt Romney To Blow Up

      February 8, 2023

      Pennsylvania Democrats Sweep 3 Special Elections And Take Control Of State House

      February 8, 2023

      Elon Musk Exposes Little Known State Department Agency as ‘Worst Offender in US Government Censorship’

      February 8, 2023

      Republicans to grill ex-Twitter executives over handling of Hunter Biden story

      February 8, 2023

      Uber: focus on adjusted profit metrics is outdated

      February 8, 2023

      Turkey stock market trading suspended after benchmark index falls 7%

      February 8, 2023

      UK to give Ukraine fighter jet training as Volodymyr Zelenskyy visits

      February 8, 2023

      Facts About Mardi Gras You Never Knew

      February 8, 2023

      Sexy Half Lashes—and More February Obsessions from Our Beauty Editors

      February 7, 2023

      Date-Night Dressing, Decoded

      February 7, 2023

      Could Your Skin Use a Little (Fixing, Restoring) Extra?

      February 5, 2023

      Microsoft’s Activision acquisition in peril after UK regulator warns of harm to gamers

      February 8, 2023

      Giannis, Doja Cat and Amy Schumer will peddle Google’s Pixel during the Super Bowl • TechCrunch

      February 8, 2023

      Data observability platform Acceldata raises $50M • TechCrunch

      February 8, 2023

      Wednesday’s top tech news: after Microsoft’s AI blowout, it’s Google’s turn

      February 8, 2023
    EasyDailyCrypto – Today Crypto | Bitcoin | Global World News
    Beranda » North Korean hackers exploited Internet Explorer zero-day to spread malware • TechCrunch
    Technology

    North Korean hackers exploited Internet Explorer zero-day to spread malware • TechCrunch

    EASYDAILYCRYPTO NEWSBy EASYDAILYCRYPTO NEWSDecember 8, 2022No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    North Korean state-sponsored hackers exploited a previously unknown zero-day vulnerability in Internet Explorer to target South Korean users with malware, according to Google’s Threat Analysis Group.

    Google researchers discovered first discovered the zero-day flaw on October 31 when multiple individuals uploaded a malicious Microsoft Office document to the company’s VirusTotal tool. These documents purported to be government reports related to the Itaewon tragedy, a crowd crush that occurred during Halloween festivities in the Itaewon neighborhood of Seoul. At least 158 people were killed and 196 others were injured.

    “This incident was widely reported on, and the lure takes advantage of widespread public interest in the accident,” Google TAG’s Clement Lecigne and Benoit Stevens said on Wednesday.

    The malicious documents were designed to exploit a zero-day vulnerability in Internet Explorer’s Script engine, tracked as CVE-2022-41128 with a CVSS severity rating of 8.8. Once opened, the document would deliver an unknown payload after downloading a rich text file (RTF) remote template that would render remote HTML using Internet Explorer. Although Internet Explorer was officially retired back in June and replaced by Microsoft Edge, Office still uses the IE engine to execute the JavaScript that enables the attack.

    “This technique has been widely used to distribute IE exploits via Office files since 2017,” Lecigne and Stevens said. “Delivering IE exploits via this vector has the advantage of not requiring the target to use Internet Explorer as its default browser.”

    The researchers added that Google reported the vulnerability to Microsoft on October 31 before it was fixed it a week later as part of Microsoft’s November 2022 Patch Tuesday security updates.

    Google has attributed the activity to a North Korean-backed hacking group known as APT37, which has been active since at least 2012 and has been previously observed exploiting zero-day flaws to target South Korean users, North Korean defectors, policymakers, journalists and human rights activists. Cybersecurity company FireEye previously said it assessed with “high confidence” that APT37 activity is carried out on behalf of the North Korean government, noting that the group’s primary mission “is covert intelligence gathering in support of North Korea’s strategic military, political and economic interests.”

    While Google researchers didn’t get a chance to analyze the malware APT37 hackers attempted to deploy against their targets, they note that the group is known for using a wide variety of malicious software.

    “Although we did not recover a final payload for this campaign, we’ve previously observed the same group deliver a variety of implants like ROKRAT, BLUELIGHT, and DOLPHIN,” Lecigne and Stevens said. “APT37 implants typically abuse legitimate cloud services as a C2 channel and offer capabilities typical of most backdoors.”

    Google TAG’s research comes after researchers at threat intelligence company Cisco Talos revealed that the North Korean state-sponsored Lazarus hacking group – also known as APT38 — is exploiting the Log4Shell vulnerability to target energy providers in the United States, Canada and Japan.

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    EASYDAILYCRYPTO NEWS
    • Website

    Daily update exclusive News about the latest Crypto, Bitcoin, Ethereum, Blockchain, NFTs, Altcoin, Trendings News with the latest Global World News today

    Related Posts

    Microsoft’s Activision acquisition in peril after UK regulator warns of harm to gamers

    February 8, 2023

    Giannis, Doja Cat and Amy Schumer will peddle Google’s Pixel during the Super Bowl • TechCrunch

    February 8, 2023

    Data observability platform Acceldata raises $50M • TechCrunch

    February 8, 2023

    Leave A Reply Cancel Reply

    Advertisement
    Our Picks

    How To Choose The Best Retail POS Software For Startups

    December 20, 2022

    Pervez Musharraf, ex-military ruler of Pakistan, laid to rest | News

    February 7, 2023

    18 Amazon Baby Shower Gifts That New Parents Will Go Goo-Goo Gaga Over

    February 7, 2023

    Pregnant Keke Palmer Dancing in Her Underwear Will Brighten Your Day

    February 7, 2023
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    Don't Miss
    World news

    US foreign policy reduced to an afterthought | Politics

    By EASYDAILYCRYPTO NEWSFebruary 8, 202300 Views

    US President Joe Biden’s State of the Union address on Tuesday night was quite upbeat.…

    Google’s New AI-Powered Features: Search Just Got Smarter

    February 8, 2023

    A Record Number of Americans Say They’re Worse Off Financially Under Biden – Most in Nearly 4 Decades

    February 8, 2023

    How Tech Changed My Life With Heart Failure

    February 8, 2023

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us
    About Us

    Update Breaking Crypto News about the latest Crypto daily, Ethereum, Blockchain, NFTs, Altcoin, Trends and Happenings including the latest World News. Exclusive crypto coin news in Easy Daily Crypto.

    Email Us: [email protected]
    Contact: +62-822-7359-8787

    Our Picks

    US foreign policy reduced to an afterthought | Politics

    February 8, 2023

    Google’s New AI-Powered Features: Search Just Got Smarter

    February 8, 2023

    A Record Number of Americans Say They’re Worse Off Financially Under Biden – Most in Nearly 4 Decades

    February 8, 2023
    Crypto

    SEC To Step Up Probe On Firms And Brokers Pitching Crypto

    February 8, 2023

    BIS To Launch Stablecoin Monitoring Project Amid CBDC Development

    February 8, 2023

    Bitcoin Volume On Most Exchanges Plunges, Binance’s Hits ATH

    February 8, 2023
    Facebook Twitter Instagram Pinterest
    • Politics
    • Business
    • Crypto
    • Technology
    © 2023 All Right Reserved. Designed by EasyDailyCrypto.com.

    Type above and press Enter to search. Press Esc to cancel.