Here’s what adaptive, contextually aware malware of today is capable of

Gone are the days where malware had a singular approach and purpose.

A new report released by Cisco sheds light on some of the ways malware creators have used vulnerabilities like the recent Flash zero day exploits to great effectiveness.

One that is particularly noteworthy is called Angler. It uses a combination of Flash, Java, Internet Explorer and Silverlight vulnerabilities and has features that include “fileless infection”, virtual machine and security product detection and is able to switch between various payloads including trojans, rootkits, ransomware, etc.

According to Cisco, Angler “excels at attempting to evade detection by employing domain shadowing as one of its techniques,” whereby it hijacks a user’s domain registration information to create subdomains from which it delivers malware.

This type of adaptive, almost “aware” malware seems to be the threat of tomorrow, with others, including an email-based “mutating campaign” called Dridex also able to change content, attachments, and more to avoid detection.

“The Angler Exploit Kit represents the types of common threats that will challenge organizations as the digital economy and the Internet of Everything create new attack vectors and monetization opportunities for adversaries,” the 2015 Midyear Security Report said.

In order to mitigate damage, Cisco emphasized that time to detection must be greatly reduced from hundreds of days down to hours.

“The innovation race between adversaries and security vendors is accelerating,” the report said.

 

Would you recommend this article?

Share

Thanks for taking the time to let us know what you think of this article!
We'd love to hear your opinion about this or any other story you read in our publication.


Jim Love, Chief Content Officer, IT World Canada

Featured Download

CDN Staff
CDN Staffhttps://channeldailynews.com
For over 25 years, CDN has been the voice of the IT channel community in Canada. Today through our digital magazine, e-mail newsletter, video reports, events and social media platforms, we provide channel partners with the information they need to grow their business.

Related Tech News

CDN in your inbox

CDN delivers a critical analysis of the competitive landscape detailing both the challenges and opportunities facing solution providers. CDN's email newsletter details the most important news and commentary from the channel.