News Duri campaign smuggles malware via HTML and JavaScript

A new attack campaign uses a combination of HTML smuggling techniques and data blobs to evade detection and download malware.

Dubbed Duri, the campaign exploits the JavaScript blob method which generates the malicious file in the web browser, thus avoiding detection by sandboxes and proxies.

"Traditional network security solutions such as proxies, firewalls, and sandboxes rely on the transfer of objects over the wire. For example, a sandbox might extract file objects...
Click to expand...
Duri campaign smuggles malware via HTML and JavaScript