Get a Pentest and security assessment of your IT network.

News

Malware authors quickly adopt SHA-2 through stolen code-signing certificates

Symantec researchers have found new samples of Carberp.B online banking Trojan digitally signed with two stolen certificates. The certificates used to sign malware are typically stolen from legitimate organizations and not bought by the attackers themselves. Having two signatures on a single file ensures that even if one certificate is revoked, the file will still appear as trusted thanks to the other signature. Windows 7 and higher and Windows Server will no longer trust code signed with a SHA-1 based certificate if its timestamp is later than Jan. 1, 2016.”]

Source: https://www.csoonline.com/article/3047590/malware-authors-quickly-adopt-sha-2-through-stolen-code-signing-certificates.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks