HTML smuggling surges: Highly evasive technique increasingly used in banking malware, targeted attacks

Found 16 days ago at Microsoft Press

As the name suggests, HTML smuggling lets an attacker “smuggle” an encoded malicious script within a specially crafted HTML attachment or web page. When a target user opens the HTML in their web browser, the browser decodes the malicious script, which, in turn, assembles the payload on the host device. Thus, instead of having a malicious executable pass directly through a network, the attacker...

Read the article at Microsoft Press

More Office News