Symantec says Shady RAT not sophisticated or advanced
Contributed by: Email on 08/05/2011 09:26 AM
[
Comments
]
Based on the information we managed to glean from the report and our own intelligence sources, we have identified the initial attack vectors, the threats used and how the attack was staged. In addition to all this, we have also uncovered what appears to be the same information source about the victims of the attacks that was used by McAfee as the basis of their report. This information is freely available on the attackers command and control site, which is a strange oversight considering this type of attack is often described as advanced or sophisticated.
The attack mainly comprises of three stages, which are detailed at the Symantec blog.
Comments