SockDetour backdoor used in attacks on defense contractors, says Unit 42

Researchers at Palo Alto Network’s Unit 42 said they discovered a tool — named SockDetour — that serves as a backup backdoor in case the primary one is removed. The researchers said it stood out and is hard to detect because it operations filelessly and socketlessly on compromised Windows servers.

Read full article on ZDNet

 


Date:

Categorie(s):

Tag(s):