Blogspot-Hosted Payloads Delivered in ‘Veil#Drop’ Attacks
Securonix researchers identified a complex malware delivery framework called ‘Veil#Drop’ that utilizes compromised websites, specifically Blogspot, to deploy information-stealing malware. The framework employs multiple layers of obfuscation and evasion techniques to bypass traditional security measures and install PureLog Stealer, a .NET-based malware that targets a wide range of user data, including browser credentials and cryptocurrency information. This sophisticated attack chain highlights the increasing reliance on compromised infrastructure and advanced evasion tactics by threat actors.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data