Adobe addressed the CVE-2018-4878 in February after North Korea’s APT group was spotted exploiting it in targeted attacks. -- The security expert Claes Splett has published a video that shows how to build a CVE-2018-478 exploit in ThreadKit. securityaffairs.com/71227/ha…
A couple of exciting announcements! I will be speaking @BSidesLV about Document Exploit Kits (ThreadKit and VenomKit) and teaching a workshop @defcon on how to analyze their exploits, shellcode and resulting payloads!
#Threadkit exploit kit is distributing #Formbook malware targeting an old vulnerability. The 2017 bug was discovered, exploited and patched back in July 2017, but that hasn’t stopped it from viewing the exploit as still valuable. ow.ly/Iqf230nClMo
The Advanced Persistent Threat (APT) group, "Cobalt Group," has been observed by researchers from Fidelis to have begun using a new version of the "ThreadKit" exploit kit. hubs.ly/H0fXB0T0
The Cobalt group, known for targeting financial institutions, has been using a new variant of the Threadkit Office exploit in its attacks bleepingcomputer.com/news/se…