免费注册 查看新帖 |


  平台 论坛 博客 文库
最近访问板块 发新帖
查看: 1797 | 回复: 0
打印 上一主题 下一主题

SpyEye Trojan Source Code Now in the Wild [复制链接]

1 [收藏(0)] [报告]
发表于 2011-12-22 08:53 |只看该作者 |倒序浏览
SpyEye Trojan Source Code Now in the Wild

Wednesday, August 17, 2011

Contributed By:

 A security researcher is warning of the potential increase in the prevalence of data-stealing malware exploits after the discovery that the source code for the SpyEye Trojan has been released into the wild.

"Now that SpyEye has been outed, it is only a matter of time before this becomes a much larger malware threat than any we have seen to date. So for the next few months, please hold onto your seats people… this ride is about to get very interesting," wrote security vendor Damballa's Sean Bodmer.

The SpyEye code, which was previously only available to malicious attackers on the black market for a hefty price in the vicinity of $10,000 or so, was leaked by a French researcher who goes by the handle Xyliton, and is a member of the Reverse Engineers Dream (RED) outfit.

"One of the most dangerous Swiss Army knives in malware is now available to billions... What this means is that anybody can use it," blogged Bodmer.

SpyEye is known to be one of the more powerful data-sniffing trojans ever developed, and the release of the source code means the likelihood that there will be a dramatic increase in its application is a very real scenario.

"SpyEye has been on everyone’s priority list of threat discussions for quite some time, and is now going to become an even more pervasive threat. The same thing happened when the Zeus kit source code was released in March 2011," Bodmer stated.

Security researches last spring noted the release of source code for the infamous Zeus Trojan when files containing the code began to appear in underground discussion forums most often used by criminal hackers.

The Zeus Trojan is widely hailed as one of the most dangerous pieces of malware to ever surface in the wild, and numerous variants of the malicious code, continue to propagate.

The Zeus Trojan can lay dormant for long periods until the user of the infected machine accesses accounts such as those used for online banking. Zeus harvests passwords and authentication codes and then sends them to the attackers remotely.

In an article on the McAfee Labs blog lat fall, Senior Threat Researcher Francois Paget warned of the pending merger of the Zeus and Spyeye tools, and the first toolkit combining the exploits arrived on the black market early this year.

"Both Zeus and SpyEye were prevalent and dangerous malware separately; the combination of their functionality takes this threat to a new level," Paget wrote.

Source:  http://www.darkreading.com/security/attacks-breaches/231500009/

您需要登录后才可以回帖 登录 | 注册

本版积分规则 发表回复


北京盛拓优讯信息技术有限公司. 版权所有 京ICP备16024965号-6 北京市公安局海淀分局网监中心备案编号:11010802020122 niuxiaotong@pcpop.com 17352615567
中国互联网协会会员  联系我们:huangweiwei@itpub.net
感谢所有关心和支持过ChinaUnix的朋友们 转载本站内容请注明原作者名及出处

清除 Cookies - ChinaUnix - Archiver - WAP - TOP