Phishy Business: Horabot Malware Hooks Latin America with Invoice Scams

Phishers are reeling in victims with a new malware called Horabot, targeting Windows users in Latin America. Disguised as financial documents, these emails bait users into opening malicious attachments. Once hooked, the malware steals email credentials, swipes contact lists, and dabbles in banking fraud, leaving victims saying, “Holy Horabot!”

Pro Dashboard

Hot Take:

Horabot is like the ultimate party crasher – uninvited, unwelcome, and definitely not leaving without causing a scene. This new phishing campaign makes the NSA look like a group of amateur magicians, pulling rabbits out of hats while Horabot is out here pulling passwords from your email. It’s like a bad telenovela; you don’t know how it got here, but it’s hard to look away from the drama. So, Latin American Windows users, it might be time to start vetting your ‘invoices’ a little more diligently, lest you end up starring in the next episode of ‘When Malware Attacks’.

Key Points:

  • Horabot targets Windows users in Latin American countries with phishing emails disguised as invoices.
  • The campaign steals email credentials and propagates through Outlook COM automation.
  • It uses VBScript, AutoIt, and PowerShell scripts for reconnaissance and credential theft.
  • The malware can steal data from a variety of popular web browsers including Chrome and Edge.
  • Horabot was first identified in 2023, and is believed to originate from Brazil.

Membership Required

 You must be a member to access this content.

View Membership Levels
Already a member? Log in here
The Nimble Nerd
Confessional Booth of Our Digital Sins

Okay, deep breath, let's get this over with. In the grand act of digital self-sabotage, we've littered this site with cookies. Yep, we did that. Why? So your highness can have a 'premium' experience or whatever. These traitorous cookies hide in your browser, eagerly waiting to welcome you back like a guilty dog that's just chewed your favorite shoe. And, if that's not enough, they also tattle on which parts of our sad little corner of the web you obsess over. Feels dirty, doesn't it?