Taiwanese manufacturing, healthcare, and IT firms are being targeted by the SmokeLoader malware, a versatile tool known for its advanced evasion techniques and broad range of attacks. SmokeLoader, a malware downloader first seen in 2011, is capable of executing secondary payloads, stealing data, mining cryptocurrency, and more. This recurrence comes despite a decline in SmokeLoader activity following a Europol-led disruption in May 2024.
SmokeLoader Malware Exploits MS Office Flaws to Steal Browser Data
The SmokeLoader malware has launched attacks on Taiwanese industries including healthcare, IT, and manufacturing. The scams start with phishing emails that exploit Microsoft Office vulnerabilities,