News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

Phishing: Dangerous invoices from law firms
B2B Cyber ​​Security ShortNews

The Threat Fusion Center (TFC), a division of BlueVoyant, has uncovered the “NaurLegal” phishing campaign with fake invoices from law firms. The attackers rely on PDF documents, OneNote or Excel files that are infected with malware. The attackers pose as law firms and abuse the trust that their victims place in legal service providers. The campaign is called “NaurLegal” and the attacks are believed to have been orchestrated by cybercrime group Narwhal Spider (also known as Storm-0302, TA544). The attackers disguise malicious PDF files as authentic-looking invoices from reputable law firms - a tactic...

Read more

Emotet, DarkGate, and LokiBot Infection Tactics
B2B Cyber ​​Security ShortNews

Analysis by Kaspersky reveals intricate infection tactics used by malware strains. According to this, the famous Emotet botnet is reporting back using a new infection route via OneNote files and is attacking companies; In addition, the loader DarkGate has been equipped with numerous new features and LokiBot targets cargo ship companies in phishing emails with Excel attachments. Kaspersky's latest report reveals the current sophisticated infection tactics used by DarkGate, Emotet, and LokiBot malware. DarkGate's unique encryption and Emotet's robust comeback and LokiBot's ongoing exploits underscore the need for an ever-evolving cybersecurity landscape. Emotet uses OneNote file…

Read more

Threat Report: OneNote attacks instead of dangerous Office macros
Threat Report: OneNote attacks instead of dangerous Office macros - Photo by FLY:D on Unsplash

In the latest report, security experts discover new attack vectors, cybercriminal resilience and familiar faces: The ESET Threat Report H1 2023 shows that the rules of the game for cybercriminals are changing. A special attack vector: OneNote instead of Office macros. Office macros have been one of the top cyber threats for many years. After Microsoft changed the rules for this, OneNote attachments took over as malware launchers. This is a result of the latest edition of the ESET Threat Report H1 2023. In addition, between December 2022 and May this year, ESET researchers have made other worrying discoveries: Cyber ​​criminals are proving…

Read more

New vulnerabilities: OneNote, macros, UEFI
New vulnerabilities: OneNote, macros, UEFI - Photo by AltumCode on Unsplash

The threat report shows new attack methods: Cyber ​​criminals exploit UEFI vulnerabilities and misuse Microsoft file formats to circumvent macro security functions. The number of IT attacks averted is stagnating at a high level. This emerges from the current threat report from G DATA CyberDefense. There are numerous vulnerabilities that cybercriminals consistently exploit. How UEFI bootkits disable security features and make systems vulnerable. Another scam used by attackers is manipulated OneNote or Publisher files that contain malware. Vulnerabilities are exploited immediately The current threat report from G DATA CyberDefense proves that attackers quickly react to a changed situation...

Read more

Emotet handles Microsoft OneNote attachments
Emotet handles Microsoft OneNote attachments

Emotet breaks new ground again and infects Microsoft OneNote documents. The digital notebook, which is popular in companies, is therefore a danger for many users. In fact, since last summer, Microsoft rolled out its initiative to automatically block macros from downloaded documents. This has forced criminals to reconsider how they want to spread malware via spam. One notable change has been the use of Microsoft OneNote documents by several other criminal gangs. Now it's Emotet's turn to follow this strategy. Dangerous OneNote Documents OneNote file is simple yet effective at social engineering users with a…

Read more