A new variant of a Point of Sale (POS) malware family is highly targeted, digitally signed, and exfiltrates stolen payment card over DNS.Read more...
Entries filed under 'Claudiu Teodorescu'
Threat Research Blog
FireEye posts blog entries under threat research to present and discuss cyber attacks and threat intelligence from a technical perspective. These blog posts cover everything from exploits and vulnerabilities, to advanced malware and targeted attacks.
October 27, 2015 3:00 PM By Fred House, Andrew Davis, Claudiu Teodorescu | Advanced Malware
August 8, 2015 2:45 PM By William Ballenthin, Matthew Graeber, Claudiu Teodorescu
FireEye has recently seen a surge in attacker use of Windows Management Instrumentation (WMI) to carry out objectives such as system reconnaissance, remote code execution, persistence, lateral movement, covert data storage, and VM detection.Read more...