Copied


Beware of Excel Files in Email Attachment, Says Symantec

Henry Chan   May 01, 2019 16:00 1 Min Read


 

beapy virus feature.jpg

Beapy – a cryptojacking malware targeting Chinese enterprises to exploit and stolen and hardcode credentials by using EternalBlue. This leaked NSA tool targets the weakness in Windows SMB protocol to facilitate the spread of files across the networks, according to its blog post published in Symantec website – a security software provider.

Beapy works by sending a malicious Excel document to victims via an email attachment. When users opened the excel attachment, the DoublePulsar backdoor will be automatically downloaded which will open a door for remote code execution on compromised computers.

Despite the decline of cryptojacking by 52 percent last year, it is still an impending issue that need to be resolved as Symantec said “Looking at the overall figures for cryptojacking, we can see that there were just under 3 million cryptojacking attempts in March 2019. While a big drop from the peak of February 2018, when there were 8 million cryptojacking attempts, it is still a significant figure.”

 


Read More