🔔科技频道[奇诺分享-ccino.org]⚡️
9 小时前
IT之家
卡巴斯基披露 CoolClient 后门变种:更隐蔽监视 Win10/Win11 设备活动
Ithome
卡巴斯基披露 CoolClient 后门变种:更隐蔽监视 Win10/Win11 设备活动 - IT之家
在针对缅甸目标的活动中,HoneyMyte 先使用 PlugX(PlugX 后门)作为入侵后的初始植入体,再投放 CoolClient。攻击者先为伪造的 Windows Defender 目录和重命名后的 defender.exe 添加 Microsoft Defender 文件夹排除项与文件排除项。
Home
Blog
Discuss
Gsearch
Powered by
BroadcastChannel
&
Sepia