BINDCLOAK Steals Windows User and Process Tokens to Run Malware With Higher Privileges

A newly uncovered Windows backdoor is giving an East Asia-linked espionage operation a quiet way to deepen control inside targeted networks. Named BINDCLOAK, the modular implant is deployed after initial access and can run malware using more powerful user or process accounts. The campaign targeted government entities in the Middle East, with a particular focus […]

This article has been indexed from Cyber Security News

Read the original article: