Disguising Exfiltrated Data
Current Berkman People and Projects 2014-08-21
Summary:
There's an interesting article on a data exfiltration technique. What was unique about the attackers was how they disguised traffic between the malware and command-and-control servers using Google Developers and the public Domain Name System (DNS) service of Hurricane Electric, based in Fremont, Calif. In both cases, the services were used as a kind of switching station to redirect traffic...
Link:
https://www.schneier.com/blog/archives/2014/08/disguising_exfi.htmlFrom feeds:
Gudgeon and gist » Schneier on SecurityFair Use Tracker » Current Berkman People and Projects