in ,

FireEye IDs Malware Evasion Tactics; Abhishek Singh Comments

FireEye IDs Malware Evasion Tactics; Abhishek Singh Comments - top government contractors - best government contracting event
https://executivebiz-media.s3.amazonaws.com/2022/08/19/30/9f/c3/a0/b7/6f/d4/64/Executive-Biz.png

CyberAttackFireEye has updated a report that outlines techniques some malware authors use to evade a network infrastructure’s traditional defenses.

The latest release of “Hot Knives Through Butter: Evading File-Based Sandboxes” adds four new stealth and evasion practices to the 11 already included in the August 2013 list, FireEye said Tuesday.

The report says sandboxes isolate, test, report and monitor suspect files but are not capable of contextual analysis, providing opportunities for advanced malware and persistent threats to go undetected.

“Today’s attackers have built techniques to bypass the use of virtualization and sandboxing in the enterprise for far longer than traditional security solutions have been designed to think about them,” said Abhishek Singh, senior staff research scientist engineer at FireEye and co-author of the report.

“Approaching security from the standpoint of monitoring activities without context around them is akin to navigating without a compass,” he added.

The new report focuses on:

  • malware that takes advantage of the human element via mouse click, dialog box and other events
  • configuration-centric attacks that utilize sleep calls, time triggers, process hiding, malicious downloaders and execution after reboot
  • the environment-based route to compromising a system through embedded iframes in files and DLL loaders
  • system-service lists, the VMX port and other VMware-specific evasion techniques
ExecutiveBiz Logo

Sign Up Now! ExecutiveBiz provides you with Daily Updates and News Briefings about Cybersecurity News

mm

Written by Elizabeth Leigh

Aerojet Rocketdyne to Build NASA CubeSat Propulsion System; Christian Carpenter Comments - top government contractors - best government contracting event
Aerojet Rocketdyne to Build NASA CubeSat Propulsion System; Christian Carpenter Comments
DLT to Host Cybersecurity Virtual Conference - top government contractors - best government contracting event
DLT to Host Cybersecurity Virtual Conference