Thread Rating:
  • 1 Vote(s) - 5 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Novidade Exploit Kit Actively Targeting SOHO and Home Routers
#1
Quote:Trend Micro's security researchers discovered multiple campaigns during September and October that wielded the Novidade exploit kit capable of changing Domain Name System (DNS) settings on home and SOHO routers with the help of cross-site request forgery (CSRF) attacks.

The attackers employ this the exploit kit to attack victims using both desktop and mobile devices, with the vast majority of malware campaigns that utilized it targeting banking credentials of Brazillian customers.

Novidade can exfiltrate banking info from its targets by changing vulnerable routers' DNS settings to those of maliciously configured servers controlled by its masters, allowing them to carry out pharming attacks on all devices connected to the compromised router.

As discovered by Trend Micro
, the first Novidade samples were unearthed during August 2017, with two separate strains spotted in the wild until now while being used in multiple campaigns.

This leads to the conclusion that the exploit kit has either been sold or shared between multiple threat groups, or that its source code has been inadvertently leaked and modified by other groups to suit their needs and, subsequently, being added to their toolset.

Source: https://news.softpedia.com/news/new-novi...4230.shtml
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 2 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
MEGA - Product features update – June 20...
Product features up...harlan4096 — 10:48
K-Lite Codec Pack 18.4.0 / 18.4.3 Update
Changes in 18.4.3:...harlan4096 — 07:42
Google Chrome 126.0.6478.126/127
Google Chrome 126....harlan4096 — 07:41
INTEL Arc Graphics 31.0.101.5592 driver
Fixed Issues In...harlan4096 — 07:40
Windows 11 set up is automatically enabl...
Microsoft has made...harlan4096 — 07:38

[-]
Birthdays
Today's Birthdays
avatar (37)Tedscolo
avatar (44)brakasig
Upcoming Birthdays
No upcoming birthdays.

[-]
Online Staff
There are no staff members currently online.

>