Bonjour, new guests from small-town India
Puneet Dhawan of Accor is brimming with ideas on ways to revive the hospitality sector
Cybercriminals are using malicious Excel documents known as ‘maldocs’, to steal user information accounting to security researchers at NVISO Labs.
According to a detailed analysis published by researchers at NVISO Labs, a malware gang named Epic Manchego has been targeting companies across the globe with phishing emails containing malicious Excel documents.
“In July 2020, NVISO detected a set of malicious Excel documents, also known as “maldocs”, that deliver malware through VBA-activated spreadsheets,” read the report.
Hackers create these documents through a .NET library called EPPlus rather than Microsoft Office, which makes it more difficult to detect.
“The creators of the malicious Excel documents used a technique that allows them to create macro-laden Excel workbooks, without actually using Microsoft Office. As a side effect of this particular way of working, the detection rate for these documents is typically lower than for standard maldocs,” the report read.
Hackers are using EPPlus to generate spreadsheet files in the Office Open XML (OOXML) format.
The document contains macros that can steal user information if executed. When a user opens the Excel files and clicks on the ‘Enable editing’ button, it allows the script to execute. It then downloads and installs malware on users’ systems.
The final payloads include infostealer trojans such Azorult, AgentTesla, Formbook, Matiex, and njRat.
“The payloads that have been observed up to the date of the release of this post, have been, for the most part, so called information stealers with the intention of harvesting passwords from browsers, email clients,” the report said.
Researchers further advised users to carefully vet scuh documents received from sources outside work and to “implement robust endpoint detect and respond defenses” to prevent attacks.
Puneet Dhawan of Accor is brimming with ideas on ways to revive the hospitality sector
Citroen’s first vehicle sports a novel design and European interiors. It is also meant to be as comfortable as ...
The pandemic is only the tip of the iceberg that the country’s cash-poor airlines — both regional and national ...
The government is yet to specify the framework of its recently announced old vehicle scrappage policy
With initial public offerings galore, we give you a cheat sheet to score some good grades
Biggest risk in selling funds in a rising scenario is exiting early and missing out on further gains
Go for a standard vector-borne diseases policy if you don’t have a regular health plan
No credit risk is an attraction, but note the nuances
With the public looking beyond mainstream media for reports from the ground, independent digital platforms are ...
Mughal Gardens in the Capital open to visitors — albeit with Covid-19 protocol — for the annual Udyanotsav
Salty, buttery, cheese coated or with maple syrup and bacon — popcorn is lending its adaptable self to gourmet ...
A toast to a traditional drip irrigation system still going strong in the Northeast
Its name is the starting point of a brand’s journey and can make a big difference in the success sweepstakes
Sober spirits are the in thing
A peek into where ad spends went last year and where they are headed tomorrow
Can Swiggy Instamart disrupt the ecommerce groceries space, currently ruled by the Amazons and Big Baskets? ...
Three years after its inception, compliance with GST procedures remains a headache for exporters, job workers ...
Corporate social responsibility (CSR) initiatives of companies are altering the prospects for wooden toys of ...
Aequs Aerospace to create space for large-scale manufacture of toys at Koppal
And it has every reason to smile. Covid-19 has triggered a consumer shift towards branded products as ...
Please Email the Editor