Russian Hackers Use Steganography to Bypass Antivirus

General News

Summary

A recent article by zdnet explains how hackers have started using steganography to hide malicious code inside of audio .wav files. Many modern malware threats are multi-stage, meaning a “dropper” file on the victim’s system goes and grabs the actual malicious code. This particular evasion technique does well at hiding the malicious code in a file that isn’t scanned, with the dropper extracting the malware from the audio file and executing it. That said, it also makes identifying a file with steganography applied easy if you know what to look for. In this example though, the dropper must already be running on the system for the malicious code to execute.

Classifications

industries
Retail
applications
Web Conferencing

AskAI Classifications

Labels
Cybersecurity Software SaaS Network Security

Linked Companies

WatchGuard
$250M to $500M
Symantec
$25M to $50M