Ask Fitis, the Bear: Real Crooks Sign Their Malware

Krebs on Security 2023-06-01

Summary:

Code-signing certificates are supposed to help authenticate the identity of software publishers, and provide cryptographic assurance that a signed piece of software has not been altered or tampered with. Both of these qualities make stolen or ill-gotten code-signing certificates attractive to cybercriminal groups, who prize their ability to add stealth and longevity to malicious software. This post is a deep dive on "Megatraffer," a veteran Russian hacker who has practically cornered the underground market for malware focused code-signing certificates since 2015.

Link:

https://krebsonsecurity.com/2023/06/ask-fitis-the-bear-real-crooks-sign-their-malware/

From feeds:

Intel Hub ยป T04 Krebs on Security

Tags:

165540027

Authors:

BrianKrebs

Date tagged:

06/01/2023, 14:18

Date published:

06/01/2023, 12:15