Cat-Phishing Hackers for Fun and Profit

On June 14th, 2017, a new variant of ZXShell appears to have been uploaded from the Marmara region of Turkey. The Trojan itself is well known and contained x32 and x64 rootkits. This blog describes the functionality of ZXShell, as well as the associate rootkits. The Trojan source code is available here. Metadata File Name:…

The post Cat-Phishing Hackers for Fun and Profit appeared first on Speaking of Security – The RSA Blog.

Continue reading Cat-Phishing Hackers for Fun and Profit

GET TO THE CHOPPAH

A new variant of this tool, previously reported in 2013 by TrendLabs, was submitted to VirusTotal from the Philippines on March 27th, 2017. Its original filename, 2017.exe, was prescient since it has the ability to exploit CVE-2017-5638 and other previous Apache STRUTS vulnerabilities. File Details File Name: 2017.exe File Size: 107008 bytes MD5:        …

The post GET TO THE CHOPPAH appeared first on Speaking of Security – The RSA Blog.

Continue reading GET TO THE CHOPPAH