Auteur Sujet: [SecList]ShadowPad in corporate networks  (Lu 3253 fois)

0 Membres et 1 Invité sur ce sujet

Hors ligne igor51

  • Admin
  • Mega Power Members
  • *****
  • Messages: 10419
[SecList]ShadowPad in corporate networks
« le: août 15, 2017, 20:00:55 »
ShadowPad in corporate networks

In July 2017, during an investigation, suspicious DNS requests were identified in a partner’s network. The source of the queries was a software package produced by NetSarang. Our analysis showed that recent versions of the software had been surreptitiously modified to include an encrypted payload that could be remotely activated by a knowledgeable attacker.
Source: ShadowPad in corporate networks

Tags: