Thursday, April 22, 2021

Digitally Signed Malware Is Increasingly Prevalent, Researchers Say

Computerworld: Security companies say they’re seeing an increase in malware signed with fraudulent digital certificates. The Stuxnet worm was one of the first to use the technique, and now other malware creators have adopted the tactic. Costin Raiu of Kaspersky Labs explained that malware with a digital certificate is particularly troublesome because “signed modules are more likely to be included in whitelisting collections, meaning the chance of them being fully analyzed is lower and they remain undetected for longer period of times.”

In some cases, the hackers use forged certificates, but in others they use stolen certificates, which are particularly difficult to block. If legitimate software is signed with the same credentials, companies cannot simply revoke the certificate or everyone who uses the legitimate software will find that it stops working.

Similar articles

Latest Articles

Top Cloud Service Providers...

Surveying the top cloud computing companies in 2021 goes way beyond AWS vs. Azure vs. Google. While those three are inarguable cloud leaders, the...

IT Planning During a...

Without a doubt, 2020 changed everything. I like to compare it to a science fiction movie where time travel is involved. Clearly, we have...

Best Data Quality Tools...

Data quality is a critical issue in today’s data centers. The complexity of the Cloud continues to grow, leading to an increasing need for...

NVIDIA’s New Grace ARM/GPU...

This week is NVIDIA’s GTC, or GPU Technology Conference, and they likely should have changed the name to ATC because this year – it...