Get a Pentest and security assessment of your IT network.

News

APT Group Embeds C&C Data on TechNet Pages

The so-called Deputy Dog APT group has surfaced again with a means of keeping its command and control servers under wraps that involves Microsoft s TechNet online resources. The use of TechNet is a formidable evasion technique since most signature-based defenses wouldn t consider such a widely used resource a threat. The attack to DeputyDog, which is also known as APT17, has used the BlackCoffee malware for two years. The malicious code connects to TechNet, decodes the message buried in a string between the characters @MICRO0S0FT and C0RP0RATI0N.

Source: https://threatpost.com/apt-group-embeds-command-and-control-data-on-technet-pages/112881/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Vulnerabilities In Alibaba threatens security of million users

News

Russian cybercriminal Roman Seleznev gets another prison sentence