Get a Pentest and security assessment of your IT network.

News

Analyzing AZORult malware using NSA Ghidra suite

Cybaze-Yoroi ZLAB malware researchers decided to use the NSA Ghidra suite in a real case study, the analysis of the AZORult malware. The malware is a PE32 file apparently coded in Visual C++, containing references to major IT companies in its metadata fields like Google and Amazon. We are able to isolate only a few actions of the malware, because its C2 server wasnt active at the time of analysis, probably due to a configuration error. After contacting the server, the sample does not have the possibility to download other components and configurations.”]

Source: https://securityaffairs.co/wordpress/83211/cyber-crime/azorult-nsa-ghidra.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks