Comment on Windows 0-day was exploited by North Korea to install advanced rootkit
tux0r@feddit.org 2 months ago
A Windows zero-day vulnerability recently patched by Microsoft was exploited by hackers working on behalf of the North Korean government so they could install custom malware that’s exceptionally stealthy and advanced, researchers reported Monday.
I am always amazed at how easy it is for ‘security researchers’ to speculate about which government is solely responsible for exploiting security vulnerabilities.
einkorn@feddit.org 2 months ago
Specific groups of hackers often have various markers that appear throughout their various malware.
Reused code fragments are the most obvious one. Others are specific code styles such as variable naming, even formatting. It’s basically the same stuff that is used to determine whether a specific text was most likely written by a specific person.