fbpx
Founder Institute Lagos Founder Institute Lagos Founder Institute Lagos
  • Home
  • About
  • Partners
  • Advertise
  • Contact
  • Signup to receive updates
Innovation | Startups | Funding | Tech Blog in Africa
Advertisement
  • Home
  • Startups
  • Hubs
  • Funding
  • WomenTech
  • CleanTech
  • Blockchain
No Result
View All Result
  • Home
  • Startups
  • Hubs
  • Funding
  • WomenTech
  • CleanTech
  • Blockchain
No Result
View All Result
Innovation | Startups | Funding | Tech Blog in Africa
No Result
View All Result
Home General

NCC-CSIRT: New Phishing Attacks compromise Device Without any Windows Security Alerts

by TechBuild.Africa
2022/12/03
in General
Phishing
Share on FacebookShare on Twitter
Tweet
Share
Share

The Nigerian Communications Commission’s Computer Security Incident Response Team (NCC-CSIRT) has warned that a new Phishing, Attacks Exploit Windows Zero-Day Vulnerability, can load a malicious QBot
malware on the compromised device without triggering any Windows security alerts.

In its advisory, NCC-CSIRT indicated that the vulnerability, which is present in all versions of Windows-based products, presents as Phishing Attacks and Malware threats.

NCC-CSIRT reports that ProxyLife security researcher discovered the new phishing exploit on Windows zero-day vulnerability to drop a Qbot malware without displaying Mark of the Web (MoTW) security warnings.

“To take advantage of the Windows Mark of the Web zero-day vulnerability, threat actors have switched to a new phishing strategy that involves propagating JS files (plain text files that include JavaScript code) signed with forged signatures.

RelatedPosts

Energy, AI and a Groovy New Tech Demo Area All on the Menu at Africa Tech Festival

Wikimedia Anambra Network sets to Mark a Year of Achievement and Awareness Campaign

IXPN, Medallion DC meet Stakeholders, discuss Internet Peering and Interconnectivity

Dr Krish crowns Technology Person of the Year at Tech Innovation Awards 2023

The newest phishing attempt begins with an email that contains a password for the file along with a link to an allegedly important document.

“When the link is clicked, a password-protected ZIP folder that includes another zip file and an IMG file is downloaded.

Normally, launching the JS file in Windows would result in a Mark of the Web security warning because it is an Internet-based file. However, the forged signature permits the JS script to function and load the
malicious QBot program without triggering any Windows security alerts,” the advisory said.

Accordingly, NCC-CSIRT advised that users apply updates per vendor instructions.

The CSIRT is the telecom sector’s cyber security incidence centre set up by the NCC to focus on incidents in the telecom sector and as they may affect telecom consumers and citizens at large.

The CSIRT also works collaboratively with ngCERT, established by the Federal Government to reduce the volume of future computer risk incidents by preparing, protecting, and securing Nigerian cyberspace to forestall attacks, and problems or related events.


Don’t miss important articles during the week. Subscribe to techbuild.africa weekly digest for updates.

Join @techbuildafrica on Telegram
Tweet
Share
Share
ShareTweetShareSendShare

Subscribe us

Recent Posts

  • Anambra ICT Agency MD to Keynote Bossladylaw Business Challenge
  • Energy, AI and a Groovy New Tech Demo Area All on the Menu at Africa Tech Festival
  • Female Innovator? Apply for Africa Innovation Fellowship Program
  • Wikimedia Anambra Network sets to Mark a Year of Achievement and Awareness Campaign
  • IXPN, Medallion DC meet Stakeholders, discuss Internet Peering and Interconnectivity
  • Dr Krish crowns Technology Person of the Year at Tech Innovation Awards 2023
  • Nigeria Calls for Open, Secure Internet
  • Appraising OPPO’s Unwavering Commitment to Quality, Trustworthiness, Innovation, and Premium Excellence
  • Modernising Customer Communication is key to Improving Customer Experience
  • Stakeholders join Forces to support the Nigeria Innovation Summit 2023
Innovation | Startups | Funding | Tech Blog in Africa

© 2013-2021 techbuild.africa. All Rights Reserved.

Navigate Site

  • About
  • Contact
  • WE-Forum
  • Privacy
  • Sitemap
  • Terms
  • Blockchain
  • CleanTech

Follow Us

No Result
View All Result
  • Home
  • Startups
  • Hubs
  • Funding
  • WomenTech
  • CleanTech
  • Blockchain

© 2013-2021 techbuild.africa. All Rights Reserved.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In