Novel phising campaign uses corrupted Word documents to evade security (www.bleepingcomputer.com)
from kid@sh.itjust.works to cybersecurity@sh.itjust.works on 02 Dec 11:24
https://sh.itjust.works/post/28912604

#cybersecurity

threaded - newest

jaybone@lemmy.world on 02 Dec 12:33 next collapse

They’ve been doing this since the 90s, so…

01189998819991197253@infosec.pub on 04 Dec 00:35 collapse

Tl;dr… A quishing attack, hidden inside docx files that are just corrupt enough to evade automatic scanners, but not so corrupted that they’re not easily recoverable.

Same tactic as the 90s macro enabled ones, but instead of a macro, it’s a phishing qr code.