Hackers Lures Drone Manual to Deliver Notorious MerlinAgent malware

siteadmin September 26, 2023

Securonix Threat Research has discovered a significant attack, STARK#VORTEX, coming from the group UAC-0154 and primarily targeting Ukraine’s military. The group uses a novel approach to deliver the MerlinAgent malware through files downloaded from untrusted sources. The malware deceptionally appears as a Microsoft Help file containing malicious JavaScript and binary payload. Enhanced logging, avoiding downloads from untrusted sources, and monitoring directories for suspicious activity is suggested for mitigation.