Get a Pentest and security assessment of your IT network.

News

How Lapsus$ Uses Stolen Source Code to Disguise Malware

Ransomware gang Lapsus$ is tricking users into installing malware by disguising it as verified and signed certificates. This comes after the Laspsus$ group leaked confidential data belonging to chipmaker Nvidia and South Korean manufacturer Samsung. Malware could be written to specifically attack a particular organization to gather information and then act as a command-and-control server, says Andrew Whaley, senior technical director at Promon, a Norwegian application security company. To exploit this process, attackers disguise files as legitimate and bypass security, allowing malware to be uploaded to Windows.”]

Source: https://www.cuinfosecurity.com/how-lapsus-uses-stolen-source-code-to-disguise-malware-a-18684

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

Canadian agency breached as hackers exploit CVE-2017-5638 flaw in Apache Struts 2