Vaccine for Emotet Malware
Schneier on Security 2020-08-18
Summary:
Interesting story of a vaccine for the Emotet malware: Through trial and error and thanks to subsequent Emotet updates that refined how the new persistence mechanism worked, Quinn was able to put together a tiny PowerShell script that exploited the registry key mechanism to crash Emotet itself. The script, cleverly named EmoCrash, effectively scanned a user's computer and generated a...
Link:
https://www.schneier.com/blog/archives/2020/08/vaccine_for_emo.htmlFrom feeds:
Berkman Center Community - Test » Schneier on SecurityGudgeon and gist » Schneier on Security