Get a Pentest and security assessment of your IT network.

News

Fortinet Finds Loader Uses Updated Version of Backdoor

Fortinet Finds Loader Uses Updated Version of Backdoor of Carbanak Backdoor Malware. Fortinet finds traces of how FIN7 group manages to keep on delivering the malware. The malware subverts the normal way that Windows will load a Dynamic Linked Library (DLL) by a technique known as DLL search order hijacking (or binary planting) In this case, the attackers use FaceFodUninstaller. This exists on a clean OS installation starting from Windows 10 RS4 (1803) at the. “%WINDR%System32WinBioPlugIns” folder, which is usually found in the parent directory.”]

Source: https://www.darkreading.com/abtv/fortinet-finds-loader-uses-updated-version-of-backdoor-/a/d-id/756509

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks