12 KB Windows Backdoor Hides C2 Domain in desktop.ini Whitespace to Evade Detection

A newly documented Windows backdoor shows how little code an attacker needs to stay hidden. The 12 KB implant was found on one corporate workstation, where it posed as Realtek audio software. Its small footprint differs from Windows in-memory backdoor activity, but both approaches aim to reduce visibility. The malware’s most unusual feature was not encryption […]

This article has been indexed from Cyber Security News

Read the original article: