DigitalCIO
No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
DigitalCIO
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
No Result
View All Result
Digitalcio
No Result
View All Result
Home Tech News

Cisco warns of malware droppers proliferating in a fake job posting

DigitalCIO Bureau by DigitalCIO Bureau
February 1, 2019
in Tech News
0
74
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter

Source: Cyware | By Ryan Stewart

• Cisco Talos identified a malicious campaign posing itself a job posting in its Korean portal.
• A Word document containing the ‘job description’ is found to have a macro code when initiated downloads an executable file.

Korean candidates could face unexpected obstacles while applying for Cisco jobs as a new malicious campaign has emerged with fake job postings under the networking company’s name on various job portals.

It has come to light that this campaign is spreading through a Word document disguised as a job posting on Cisco Korea portal. The ‘Job Description.doc’ contains parts of a code that downloads a malicious executable file.

In fact, the content in the document matches legitimate job descriptions put out by Cisco, which are publicly available on their site.

Expert attacker
In its blog post on this campaign, Cisco informed that this might be the work of an expert attacker. “Due to the targeted nature of this campaign, the lack of widespread indicator of compromise data, and the apparent nature of the targeting, this appears to be associated with a sophisticated attacker, “ it mentioned.

If the user downloads ‘Job Description.doc’, it extracts a malicious PE32 executable file called “jusched.exe” into the %APPDATA%\Roaming folder in the system. The PE32 file then attempts to contact a C2 server to check for additional instructions to execute on the system.

Additionally, the blog also highlighted how the attacker(s) managed to hide four API calls in the PE32 file so that it would make static analysis very difficult for security analysts.

A total of three legitimate job portals were said to be compromised in order to inject malicious content which includes www[.]secuvision[.]co[.]kr, ilovesvc[.]com, and www[.]syadplus[.]com.

Cisco has urged job applicants to be wary of suspicious documents lurking on these online job portals.

* Lead image used for representational purposes only.

Share30Tweet19
DigitalCIO Bureau

DigitalCIO Bureau

Recommended For You

TrendAI Becomes Part of Anthropic’s Project Glasswing

by DigitalCIO Bureau
June 5, 2026
0
TrendAI Becomes Part of Anthropic’s Project Glasswing

The collaboration will enhance efforts to detect and address software vulnerabilities through advanced AI capabilities. TrendAI, the enterprise AI security leader of Trend Micro, has announced its participation...

Read moreDetails

Tata Technologies Announces Fourth Edition of InnoVent Hackathon with Emerson and AWS, Spotlighting ‘AI at the Edge’

by DigitalCIO Bureau
June 5, 2026
0
Tata Technologies Announces Fourth Edition of InnoVent Hackathon with Emerson and AWS, Spotlighting ‘AI at the Edge’

Tata Technologies announced the launch of the 4th edition of its flagship engineering innovation hackathon, InnoVent-27. Building on its continued success, this year the initiative has been further...

Read moreDetails

Nokian Tyres accelerates its IT transformation through AI-driven modernization, partnering with TCS

by DigitalCIO Bureau
June 4, 2026
0
Nokian Tyres accelerates its IT transformation through AI-driven modernization, partnering with TCS

Combining advanced AI capabilities with deep manufacturing domain expertise, TCS will support Nokian Tyres in driving innovation and sustainable business outcomes Tata Consultancy Services (TCS) has entered into...

Read moreDetails

TCS broadens its collaboration with Euroclear to upgrade Sweden’s central securities depository system

by DigitalCIO Bureau
June 3, 2026
0
TCS broadens its collaboration with Euroclear to upgrade Sweden’s central securities depository system

TCS BaNCS and Quartz will support Euroclear Sweden’s move toward a unified Nordic securities ecosystem across the Finnish and Swedish financial markets. Tata Consultancy Services (TCS) today announced...

Read moreDetails

Hexaware Enables Enterprises to Confidently Scale AI with New Agentverse Enhancements

by DigitalCIO Bureau
June 3, 2026
0
Hexaware Enables Enterprises to Confidently Scale AI with New Agentverse Enhancements

A next-generation platform for building, deploying, and scaling AI across three core layers Hexaware Technologies has introduced new enhancements to Agentverse, its enterprise AI agent platform, focusing on...

Read moreDetails
Next Post

Kovind highlights reforms undertaken by govt in digital space

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related News

Hexaware Enables Enterprises to Confidently Scale AI with New Agentverse Enhancements

Hexaware Enables Enterprises to Confidently Scale AI with New Agentverse Enhancements

June 3, 2026

Lazarus threat group’s new campaign targets Windows and MacOS systems

March 28, 2019
VeeamON Resiliency Summit Showcases How Organizations Can Confront, Contain and Conquer Ransomware

Veeam’s New Whitepaper offers Lifeline to Indian Businesses Amid Ransomware Crisis

August 26, 2024

Browse by Category

  • Acquisition
  • Appointment
  • Archive
  • Artificial Intelligence
  • CIO Interviews
  • Cloud
  • Datacenter
  • Events and Conferences
  • Market Insights
  • News
  • Opinion and Analysis
  • Products
  • Resources
  • Security
  • Storage
  • Tech News
  • Telecom
Digitalcio

Welcome to DigitalCIO, your ultimate source for staying ahead in the ever-evolving world of technology and business.

BROWSE BY TAG

Accenture Acquisition AI Appointment artificial intelligence Artificial Intelligence and Machine Learning AWS Big Data and Analytics Blockchain CISCO Cloud Computing Cloudflare Commvault CrowdStrike Cybersecurity Digital Transformation E-books Fortinet Gartner Generative AI Google Cloud IBM India Infographics Infosys Internet of Things (IoT) Kaspersky Microsoft NTT DATA NVIDIA Palo Alto Networks Panel Discussion Salesforce Sophos Strategic Partnership Tata Consultancy Services TCS Tenable Trend Micro Veeam Veeam Software Vertiv Webinars Whitepaper Zscaler

CATEGORIES

  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources
  • Archive

NAVIGATION

  • Home
  • About Us
  • Advertise with Us
  • Contact Us

© 2024 digitalcio.in - All rights reserved.

No Result
View All Result
  • Home
  • Tech News
  • Market Insights
  • CIO Interviews
  • Events and Conferences
  • Opinion and Analysis
  • Resources

© 2024 digitalcio.in - All rights reserved.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?