ASEC과 국가사이버안보센터(NCSC), 합동 보고서 배포 및 Microsoft 브라우저 0-DAY 발견 (CVE-2024-38178)

2024-10-15 Ahnlab AhnLab and NCSC Release Joint Report on Microsoft Browser Zero-Day CVE-2024-38178

https://asec.ahnlab.com/ko/83876/

Thumbnail for ASEC과 국가사이버안보센터(NCSC), 합동 보고서 배포 및 Microsoft 브라우저 0-DAY 발견 (CVE-2024-38178)

AhnLab ASEC and South Korea's NCSC describe a TA-RedAnt operation exploiting CVE-2024-38178, a Microsoft Internet Explorer scripting-engine type-confusion vulnerability, through a compromised domestic advertising-content delivery path. The attackers inserted exploit code into scripts served to toast-advertising programs that rendered content with IE-based WebView components, enabling zero-click compromise when vulnerable advertising software downloaded and displayed the content. The report attributes the activity to the North Korean actor also tracked as RedEyes, ScarCruft, Group123, and APT37, and notes that successful exploitation could lead to malware infection and remote command execution before Microsoft issued a patch.

Related Actors

Related Reports

« Back