Get a Pentest and security assessment of your IT network.

News

The Duqu 2.0 persistence module

Duqu 2.0 doesnt have a normal persistence mechanism. The attackers created an unusual persistence module which they deploy on compromised networks. It serves a double function it also supports a hidden C&C communication scheme. This organization-level persistence is achieved by a driver that is installed as a normal system service. On 64-bit systems, this implies a strict requirement for an Authenticode digital signature. The driver listens to the network and expects a special secret keyword (romanian.antihacker in that case).”]

Source: https://securelist.com/the-duqu-2-0-persistence-module/70641/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Take note, next week update Adobe Reader and Acrobat to fix critical flaws

News

Linux bug leaves 1.4 billion Android users vulnerable to hijacking attacks