Attackers Spread New Meta Malware In Malspam Campaign

Share post:

Attackers are actively using Meta malware, a new info-stealer malware that steals information, in multiple attacks.

The attackers’ main aim is to steal passwords stored in Chrome, Edge, Firefox and cryptocurrency wallets.

Hackers who use the malicious software first send a phishing email to victims. The email contains information about money transfers with a request to an attached document.

Embedded in the attached document are spreadsheet files with DocuSign bait that trick victims into enabling content required to run the malicious VBS macro in the background.

After clicking on “enable content” the malicious script starts downloading various payloads, some of which are structured to bypass security.

Also to bypass Windows Defender, Meta malware modifies it with PowerShell to exclude .exe files from scanning, thereby protecting its malicious files from detection.

The tool is sold for $125 for monthly subscribers or $1,000 for unlimited lifetime and is advertised as an improved version of RedLine.

The sources for this piece include an article in BleepingComputer.

SUBSCRIBE NOW

Related articles

North Korean hacker infiltrates US security vendor, loads malware

KnowBe4, a US-based security vendor, unknowingly hired a North Korean hacker who attempted to introduce malware into the...

CrowdStrike releases an update from initial Post Incident Review: Hashtag Trending Special Edition for Thursday July 25, 2024

Security vendor CrowdStrike released an update on from their initial Post Incident Review today. The first, and most surprising...

Security vendor CrowdStrike issues an update from their initial Post Incident Review

Security vendor CrowdStrike released an update from their initial Post Incident Review (PIR) today. The company's CEO has...

CrowdStrike CEO summoned by Homeland Security committee over software disaster

CrowdStrike CEO George Kurtz has been called to testify before the U.S. House Committee on Homeland Security following...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways