Beware of shared docs because a major threat has been discovered lurking within files.
A new Bitdefender study exposed a phishing campaign abusing OneNote to infect computers with malware. In that attack, cybercriminals impersonated Ultramar, a Canadian gas and home fuel retailer, sending phishing emails supposedly coming from the company.
Contained in these emails was an attached file with a .one file extension which indicated a OneNote document.
As soon as users opened the file, they were immediately infected with AsyncRAT, which Bitdefender describes as “a nifty remote access tool designed to stealthily let an attacker infiltrate the devices of [their targets].”
If you want to avoid this happening to you, then protect yourself by blocking .one extensions through email, request docs in other file types, or avoid opening OneNote docs until given clearance.
And that’s the latest from TechRepublic’s News of the Week.