Hackers Update Age-Old Excel 4.0 Macro Attack

XLS files sent via emails appear password protected but aren’t, opening automatically to install malware from compromised macros, according to researchers. Continue reading Hackers Update Age-Old Excel 4.0 Macro Attack

Multiple Vulnerabilities in LibXL Library Open Door to RCE Attacks

Hackers using a specially crafted XLS files can trigger several remote code execution vulnerabilities in the LibXL library. Continue reading Multiple Vulnerabilities in LibXL Library Open Door to RCE Attacks

Italian language fake invoice delivers ransomware

Back to Italian language malspam today with another fake invoice with an excel XLS attachment. Like most of these  non English emails that I have recently received, there seems to be some degree of malformation and the body content comes as an html attachment rather than being displayed in the Continue reading → Continue reading Italian language fake invoice delivers ransomware

Japanese language fake invoice malspam using macro laden XLS files continue to deliver Ursnif banking Trojans

It looks like the Japanese malspams are still continuing  to deliver Ursnif /Gozi / ISFB banking Trojans. This one is yet another fake invoice email with the subject of 請求書添付書類について  (About invoice attachment documents) , pretending to come from random Japanese email addresses with a malicious Excel XLS  attachment that contains macros Continue reading → Continue reading Japanese language fake invoice malspam using macro laden XLS files continue to deliver Ursnif banking Trojans