Operators of the StrRAT and Ratty remote access trojans (RAT) are running a new campaign using polyglot MSI/JAR and CAB/JAR files to evade detection from security tools. The campaign was spotted by ...
The Hacker Newsは1月13日、「Cybercriminals Using Polyglot Files in Malware Distribution to Fly Under the Radar」において、近年のマルウェアの傾向として、“polyglotファイル”と呼ばれるファイル形式が出回っているとして、注意を呼び掛けた。polyglotファイルは、2つ以上の異なる ...
Proofpoint reports that a threat actor has used the tactic against critical infrastructure firms in the UAE, warns CISOs to watch for it elsewhere. A threat actor is using polyglot files to conceal ...
A previously undocumented polyglot malware is being deployed in attacks against aviation, satellite communication, and critical transportation organizations in the United Arab Emirates. The malware ...
Proofpoint observes a sophisticated BEC attack in the UAE The attackers used a compromised email account to share polyglot files with their victims These files deploy a hidden backdoor against ...