Security researchers discovered a new attack theyre calling Cloud Snooper that uses innocent-looking requests to bypass the rules of many, if not most, firewalls. A listener picked up on those requests before they reached the web server and then sent a reconstructed command to the backdoor. The rootkit then disguised its communication once again to exfiltrate the information and ultimately send it back to a command-and-control server operated by the attackers.”]