Security-X

Forum Security-X => News => Discussion démarrée par: igor51 le janvier 15, 2018, 07:00:06

Titre: [Trend]CVE-2017-11882 Exploited to Deliver a Cracked Version of the Loki Infostealer
Posté par: igor51 le janvier 15, 2018, 07:00:06
CVE-2017-11882 Exploited to Deliver a Cracked Version of the Loki Infostealer

The Cobalt hacking group was one of the first to promptly and actively exploit CVE-2017-11882 (patched last November) in their cybercriminal campaigns. We uncovered several others following suit in early December, delivering a plethora of threats that included Pony/FAREIT, FormBook, ZBOT, and Ursnif. Another stood out to us: a recent campaign that used the same vulnerability to install a “cracked” version of the information-stealing Loki.


Post from: Trendlabs Security Intelligence Blog - by Trend Micro


CVE-2017-11882 Exploited to Deliver a Cracked Version of the Loki Infostealer


Source: CVE-2017-11882 Exploited to Deliver a Cracked Version of the Loki Infostealer (http://feeds.trendmicro.com/~r/Anti-MalwareBlog/~3/qMiYLbkiXVc/)