New Variant of Zeus Trojan Hides Malware in Photos

Zeus adds steganography to its bag of tricks.

Trojan juggernaut Zeus is already widely accepted as one of the more dangerous online bank information stealing malware out there. Even so, security researchers have discovered that it recently received a significant upgrade. ZeusVM, as it is called, uses steganography to embed malicious code into a legitimate JPG image hosted on a server.

“The malware was retrieving a JPG image hosted on the same server as were other malware components,” wrote senior security researcher at Malwarebytes Jerome Segura. “From a webmaster point of view, images (especially ones that can be viewed) would appear harmless.”

After researchers decryped the malicious file, they found the targeted banks included Deutsche Bank, Wells Fargo and Barclays.


Original article by Jeremy Kirk.
Read the full story here.

One Response

Related Posts

The Magnificent Seven 2023

Seven Trends . . . …that small bank Information Security Officers face in 2023 Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Welcom...

“Phone Phishing” – Awareness Poster (Re-release)

Another awareness poster for YOUR customers (and users). Now that we have our own employees aware, maybe it’s time to start posting content for our customers!Check out posters.infotex.com for...

“Strong Password Tips” – Awareness Poster

Another awareness poster for YOUR customers (and users). Now that we have our own employees aware, maybe it’s time to start posting content for our customers!Check out posters.infotex.com for...