Dismiss this notice
Avast Premium Security Christmas 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=9410

Dismiss this notice
ExpressVPN Christmas 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=9405

Dismiss this notice
Master PDF Editor Christmas 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=9407

Dismiss this notice
O&O Software Christmas Blowout 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=9409

Dismiss this notice
Bandicam Christmas 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=9404

Dismiss this notice
HitmanPro.Alert Christmas 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=9406

Dismiss this notice
GFYI [Official] Ashampoo® Christmas Blowout 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=9408

Dismiss this notice
Emsisoft Anti-Malware Home Christmas 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=9412

Dismiss this notice
Macrium Reflect Home Christmas 2019 Giveaway - https://www.geeks.fyi/showthread.php?tid=9415

Thread Rating:
  • 1 Vote(s) - 5 Average
  • 1
  • 2
  • 3
  • 4
  • 5
'Saefko' Multi-Layered RAT Can Spread via USB Drives
#1
Bug 
Quote:Security researchers from Zscaler have found a new remote access Trojan (RAT) for sale on the Dark Web that includes multiple functions and is able to spread via removable USB drives.
 
Dubbed Saefko, the backdoor remains in the background and executes every time a user logs in. The malware was designed to fetch Chrome browsing history for specific types of activities, send data to the command and control (C&C) server, and execute commands received from the C&C.
 
The RAT’s browsing history harvesting targets activities involving credit cards, business, social media, gaming, cryptocurrency, shopping, and the like. Upon receiving commands from the C&C, it can take screenshots, log keystrokes, record videos, and perform other actions as well, including downloading and executing additional payloads. 
 
Upon infection, the malware copies itself to two AppData directories, then also creates a startup key to ensure it is executed at each login (the key is different for accounts with administrative privileges), Zscaler reveals

Read more here: https://www.securityweek.com/saefko-mult...usb-drives
[-] The following 1 user Likes silversurfer's post:
  • harlan4096
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username:


Password:





[-]
Recent Posts
GFYI [Official] FastPCTools Fast Video ...
"What is your...divinenews — 20:36
Funny pictures
Herran — 16:28
Vivaldi Browser Updates
Vivaldi Stable 2.1...silversurfer — 13:27
Opera Browser Updates
Opera Stable 66.0.3...silversurfer — 13:25
Google Chrome Updates
Google Chrome 79.0....silversurfer — 13:22

[-]
Birthdays
Today's Birthdays
avatar (44)Qlaude2Sap
Upcoming Birthdays
avatar (44)theoldevext
avatar (39)algratCep
avatar (45)Josepharelf
avatar (34)kholukrefar
avatar (43)Lauraimike
avatar (45)WilsonWag
avatar (43)StevenPiole
avatar (34)zetssToomy
avatar (41)GornOr
avatar (44)Jamesmog
avatar (32)opeqyrav
avatar (32)ivanoFloom
avatar (35)uxegihor

[-]
Online Staff
harlan4096's profile harlan4096
Administrator

>