Adversaries continue to evolve their threat playbooks in the never ending game of cat and mouse between attacker and defender. Prevailion has deployed a platform approach to malware detection that is akin to an early-warning system for tsunamis; warning of impending attacks as they form, with zero false positives.
| less than a minute read
Malware Detection Becomes Increasingly Difficult
The group has started placing its malware in obscure file formats, namely Kodak FlashPix (FPX) files, to evade antivirus detection products, according to Danny Adamitis, Prevailion’s director of intelligence analysis. The FPX files are embedded in Microsoft Word documents that are sent to victims, which are then launched via macro commands.