SVG Phishing Malware Being Distributed with Analysis Obstruction Feature
ID: 9624daf9-8c5e-5183-91ce-4fbc3b6213fc
STIX ID: report--9624daf9-8c5e-5183-91ce-4fbc3b6213fc
Feed Name: ASEC
Threat Score
AhnLab ASEC identified a phishing malware campaign that distributes malicious SVG files containing Base64-encoded JavaScript which redirects users to CAPTCHA-style phishing pages that harvest credentials. The pages implement anti-analysis techniques (automation and debugger detection, blocking developer shortcuts and right-click) to evade inspection; the report includes redirect/final URLs and MD5 hashes as IOCs and advises caution with SVG email attachments.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
