Smoke and (screen) mirrors: A strange signed backdoor

In December 2023, Sophos X-Ops received a report of a false positive detection on an executable signed by a valid Microsoft Hardware Publisher Certificate. However, the version info for the supposedly clean file looked a little suspicious.

Source: SC Magazine

 


Date:

Categorie(s):