買幣
行情
現貨
合約
理財
活動
更多
reward-center新手專區
資訊首頁快訊詳情
Security Alert: Hackers Using Obsidian to Spread PHANTOMPULSE Malware
  • ETH0%

BlockBeats News, April 15th, cybersecurity research firm Elastic Security Labs disclosed a new type of social engineering attack targeting professionals in the financial and cryptocurrency industries. The attackers, posing as a venture capital firm on LinkedIn and Telegram, tricked targets into opening an Obsidian note library with a built-in malicious payload, leading to the deployment of the previously undocumented Windows remote access trojan, PHANTOMPULSE.

This attack did not rely on exploiting any software vulnerabilities but instead abused Obsidian's Shell Commands plugin to automatically execute malicious code when the note library was opened; the macOS version utilized an obfuscated AppleScript dropper in conjunction with a Telegram channel as a secondary command and control server, while the Windows version leveraged Ethereum transaction data for blockchain-based C2 address resolution.

來源:BlockBeats

免責聲明:當前內容均來自第三方觀點或由AI直接翻譯第三方觀點,CoinEx不保證內容的真實性、準確性和原創性,不構成CoinEx相關的任何投資建議。數字資產價格波動劇烈,請注意潛在風險。

熱搜榜
  • 幣種
    價格
    24H漲跌