Vaccine for Emotet Malware

Schneier on Security 2020-08-18

Summary:

Interesting story of a vaccine for the Emotet malware: Through trial and error and thanks to subsequent Emotet updates that refined how the new persistence mechanism worked, Quinn was able to put together a tiny PowerShell script that exploited the registry key mechanism to crash Emotet itself. The script, cleverly named EmoCrash, effectively scanned a user's computer and generated a...

Link:

https://www.schneier.com/blog/archives/2020/08/vaccine_for_emo.html

From feeds:

Berkman Center Community - Test » Schneier on Security
Gudgeon and gist » Schneier on Security

Tags:

cybersecurity

Authors:

Bruce Schneier

Date tagged:

08/18/2020, 10:49

Date published:

08/18/2020, 07:03