{"id":12944,"date":"2023-01-22T02:04:44","date_gmt":"2023-01-22T07:04:44","guid":{"rendered":"http:\/\/local.brightwhiz\/?p=12944"},"modified":"2023-01-24T02:22:15","modified_gmt":"2023-01-24T07:22:15","slug":"hackers-using-microsoft-onenote-attachments-to-spread-malware","status":"publish","type":"post","link":"http:\/\/local.brightwhiz\/hackers-using-microsoft-onenote-attachments-to-spread-malware\/","title":{"rendered":"Hackers using Microsoft OneNote attachments to Spread Malware"},"content":{"rendered":"\n
Hackers now using Microsoft OneNote attachments to infect victims’ computers with malware. These attacks come as attachments in phishing emails. This malware can then be used to download and install other malware<\/a> which can be used as ransomware, steal passwords, bank details, personal details, cryptocurrency wallets, and much more.<\/p>\n\n\n\n For many years, attackers have been using phishing emails to distribute malicious Word and Excel attachments that launch macros to download and install malware. The problem for these threat actors was back in July, 2022, Microsoft<\/a> disabled macros by default in Office<\/a> documents, making distributing malware using this method unreliable.<\/p>\n\n\n\n More recently, other file formats that have been used to distribute malware. Some notable examples include ISO images and password-protected ZIP files. These methods were quite desirable because of the Windows bug allowing ISOs to bypass security warnings as well as the popular 7-Zip archive utility not propagating mark-of-the-web flags to files extracted from ZIP archives. It is good to note that both of these bugs have been fixed.<\/p>\n\n\n\n Microsoft OneNote is installed by default in all Microsoft Office and Micrsoft 365 installations. This means that the program is still available to open the OneNote file format even if the Windows user does not use the application. Microsoft OneNote is a free digital notebook application and is included in Microsoft Office 2019 and Microsoft 365.<\/p>\n\n\n\nSpreading Malware With Microsoft OneNote Attachments<\/h2>\n\n\n\n