Nov. 14, 2023, 6:10 p.m. | JustAnother-Engineer

InfoSec Write-ups - Medium infosecwriteups.com

Opening HTML Files : A gateway to Malware

Overview

This blog post examines how the ability to run VBscript / Jscript from HTML files in windows environment is being abused.This post is focused on reverse engineering and understanding the techniques used in these attacks.

User’s receives a phishing email having a webpage as an attachment for normal eye it may appear harmless, but it would have code crafted for malicious activity.

In this sample we see that the malware has …

cybersecurity fileless malware hacking malware analysis reverse engineering

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Consultant Sécurité SI Gouvernance - Risques - Conformité H/F - Strasbourg

@ Hifield | Strasbourg, France

Lead Security Specialist

@ KBR, Inc. | USA, Dallas, 8121 Lemmon Ave, Suite 550, Texas

Consultant SOC / CERT H/F

@ Hifield | Sèvres, France