Trend Micro has observed an advanced persistent threat (APT) group exploiting vulnerabilities in Internet Explorer. The group, known as Void Banshee, is leveraging a recently patched vulnerability to infect victim machines with the Atlantida info-stealer. This is part of a multi-stage attack involving uniquely crafted URL files and impacting the Windows MSHTML Platform.
The vulnerability in question is CVE-2024-38112, affecting Microsoft Internet Explorer v 11 - 11.1790.17763.0, Windows: before 11 23H2 10.0.22631.3880 and Windows Server: before 2022 10.0.20348.2582.
Educational Webinars, Videos & Podcasts: Receive cutting-edge insights and invaluable resources, empowering you to stay ahead in the dynamic world of security.
Empowering Content: At your computer or on-the-go, stay up-to-date when you receive our eNewsletters curated with the latest technology and services that address physical, logical, cyber and enterprise resilience.
Unlimited Article Access: Dive deep into the world of cybersecurity and risk management leadership with unlimited access to our library of online articles.