in ,

FireEye Study: Chinese Hacker Group Uses Obfuscation Method to Target Websites

FireEye Study: Chinese Hacker Group Uses Obfuscation Method to Target Websites - top government contractors - best government contracting event
https://executivebiz-media.s3.amazonaws.com/2022/08/19/30/9f/c3/a0/b7/6f/d4/64/Executive-Biz.png

cyber hack network computerFireEye has collaborated with Microsoft to analyze a command and control obfuscated tool that attempted to compromise the security of a Microsoft-run information technology community portal.

FireEye said Thursday it determined that the China-based hacker group APT17 employed an obfuscation method to encode C2 communications on Microsoft TechNet website’s profile pages and forum threads.

Hackers used the online forum to host Internet protocol addresses that would send a Blackcoffee malware program to C2 servers, according to FireEye.

“This latest tactic by APT17 of using websites’ legitimate functionalities to conduct their communications shows just how difficult it is for organizations to detect and prevent advanced threats,” said Laura Galante, manager of FireEye’s threat intelligence group.

According to the company, APT17 has also targeted websites across the defense, IT, mining and legal sectors and used Google and Bing search engines to hide the group’s malicious activity.

ExecutiveBiz Logo

Sign Up Now! ExecutiveBiz provides you with Daily Updates and News Briefings about Cybersecurity News

mm

Written by Mary-Louise Hoffman

is a writer of news summaries about executive-level business activity in the government contracting sector. Her reports for ExecutiveBiz are focused on trends and events that drive the GovCon industry to include commercial technologies that private companies are developing for federal government use. She contributes news content to ExecutiveBiz’s sister sites GovCon Wire and ExecutiveGov.

Research and Markets: 'Smart Cities' to Help Drive Internet of Things Security Through 2019 - top government contractors - best government contracting event
Research and Markets: ‘Smart Cities’ to Help Drive Internet of Things Security Through 2019
NASA, NAMII Launch 3D Space Habitat Design Challenge - top government contractors - best government contracting event
NASA, NAMII Launch 3D Space Habitat Design Challenge