Alleged cybercriminal that stole identities in Washington part of larger investigation king5.com - get the latest breaking news, showbiz & celebrity photos, sport news & rumours, viral videos and top stories from king5.com Daily Mail and Mail on Sunday newspapers.
As RSA Conference 2021 nears, ESET researchers are excited to give you a bit of a sneak peek at the topics covered by their two much-anticipated sessions.
Attackers abuse Microsoft dev tool to deploy Windows malware
By
01:00 PM
Threat actors are abusing the Microsoft Build Engine (MSBuild) to deploy remote access tools (RATs) and information-stealing malware filelessly as part of an ongoing campaign.
MSBuild (msbuild.exe) is a legitimate and open-source Microsoft development platform, similar to the Unix make utility, for building applications.
This development tool can build apps on any Windows system if provided with an XML schema project file telling it how to automate the build process (compilation, packaging, testing, and deployment.)
As Anomali s Threat Research team observed, the malicious MSBuild project files delivered in this campaign bundled encoded executables and shellcode the threat actors used for injecting the final payloads into the memory of newly spawned processes.
Tips and Tactics for Better Threat Hunting
Learn the tips and tactics for better threat hunting. Register today for Threatpost’s upcoming FREE live webinar, in partnership with Palo Alto Networks, on Thursday, June 30 at 2 PM EDT, into how Palo Alto Networks’ Unit 42 goes about their threat hunting and how automation can be used to great effect for threat intelligence.
GoToWebinar
Share:
Having internal threat hunting capability is becoming a necessity for many organizations. Join Threatpost for a free live webinar, in partnership with Palo Alto Networks, for a unique perspective into how Unit 42, Palo Alto Networks’ Global Threat Intelligence Research team, goes about their threat hunting and how automation can be used to great effect for threat intelligence.
ESET Research goes to RSA Conference 2021 with record number of presentations welivesecurity.com - get the latest breaking news, showbiz & celebrity photos, sport news & rumours, viral videos and top stories from welivesecurity.com Daily Mail and Mail on Sunday newspapers.