WAV Audio Files Are Now Being Used To Hide Malicious Code

Peter Reutemann <[email protected]> Mon, 21 Oct 2019 11:12:52 +1300
Newsgroups gmane.org.user-groups.linux.waikato
Message-ID <CAHoQ12+t6ZyX_64utG1WZTFCg9mTw7yvGm9VxtVXfxbEm+ic0Q@mail.gmail.com>
'Two reports published in the last few months show that malware
operators are experimenting with using WAV audio files to hide
malicious code.

The first of these new malware campaigns abusing WAV files was
reported back in June by Symantec security researchers who said they
spotted a Russian cyber-espionage group known as Waterbug (or Turla)
using WAV files to hide and transfer malicious code from their server
to already-infected victims. The second malware campaign was spotted
this month by BlackBerry Cylance. In a report published today and
shared with ZDNet last week, Cylance said it saw something similar to
what Symantec saw a few months before. But while the Symantec report
described a nation-state cyber-espionage operation, Cylance said they
saw the WAV steganography technique being abused in a run-of-the-mill
crypto-mining malware operation.'

-- source: https://it.slashdot.org/story/19/10/20/200249

Cheers, Peter
-- 
Peter Reutemann
Dept. of Computer Science
University of Waikato, NZ
+64 (7) 858-5174
http://www.cms.waikato.ac.nz/~fracpete/
http://www.data-mining.co.nz/
_______________________________________________
wlug mailing list -- [email protected] | To unsubscribe send an email to [email protected]
Unsubscribe: https://list.waikato.ac.nz/postorius/lists/wlug.list.waikato.ac.nz