Dissecting the first Gafgyt bot implementing the “Non Un-Packable” NUP technique

  • 19 September 2018
  • 0 replies
  • 118 views

Userlevel 7
Badge +54
September 19, 2018  By Pierluigi Paganini
 

Experts at the CSE Cybsec Z-Lab have found a Gafgyt variant implementing the “Non Un-Packable” technique recently presented in a cyber security conference

 
A new variant of the Gafgyt botnet is spreading in the last hours and experts of the CSE Cybsec Z-Lab have found it with the support of the Italian cyber security experts @Odisseus and GranetMan.
 
The new variant analyzed in the report published by the experts was found on a system resolving the IP address owned by the Italian ISP Aruba. This specific version implements some advanced packing techniques that make the static analysis much harder.
 
Full Article.

0 replies

Be the first to reply!

Reply