Security News HoeflerText SocEng Attack Now Targeting Firefox with a Mozilla Font Pack

frogboy

In memoriam 1961-2018
Thread author
Verified
Top Poster
Well-known
Jun 9, 2013
6,720
For a while now, malware distributors have been using a social engineering attack against Chrome users that entails a website showing an alert stating that a font needed to view the web page was not found. This attack then prompts the Chrome user to download a Chome Font Pack in order to properly view the site.

Today, ProofPoint exploit expert Kafeine discovered that attackers have modified this attack to target Firefox users as well. Now when a visitor goes to a page that has this attack, the script will determine the browser and display the appropriate attack for either Chrome or Firefox. This attack campaign is currently pushing the Zeus Panda banking Trojan.

Examining the Firefox HoeflerText Attack
The attack entails tricking a target into going to a specific URL that is hosting javascript code that starts the attack. It is not currently known if the user is going to this URL through

malspam, malvertising, or exploit kits. Once a Firefox user visits the site, they will be shown an alert stating that "The "HoeflerText" font was not found." and that they need to update the "Mozilla Font Pack"

Read More. HoeflerText SocEng Attack Now Targeting Firefox with a Mozilla Font Pack
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top