Iranian threat actors exploit MS MSHTML bug to steal Google and Instagram credentials

This article has been indexed from Security Affairs

An Iranian threat actor is stealing Google and Instagram credentials of Farsi-speaking targets by exploiting a Microsoft MSHTML bug. Researchers from SafeBreach Labs spotted a new Iranian threat actor that is using an exploit for a Microsoft MSHTML Remote Code Execution (RCE) flaw in attacks aimed at Farsi-speaking victims. The exploit is used to install a PowerShell […]

The post Iranian threat actors exploit MS MSHTML bug to steal Google and Instagram credentials appeared first on Security Affairs.

Read the original article: Iranian threat actors exploit MS MSHTML bug to steal Google and Instagram credentials