Zeus adds steganography to its bag of tricks.
Trojan juggernaut Zeus is already widely accepted as one of the more dangerous online bank information stealing malware out there. Even so, security researchers have discovered that it recently received a significant upgrade. ZeusVM, as it is called, uses steganography to embed malicious code into a legitimate JPG image hosted on a server.
“The malware was retrieving a JPG image hosted on the same server as were other malware components,” wrote senior security researcher at Malwarebytes Jerome Segura. “From a webmaster point of view, images (especially ones that can be viewed) would appear harmless.”
After researchers decryped the malicious file, they found the targeted banks included Deutsche Bank, Wells Fargo and Barclays.
Original article by Jeremy Kirk.
Read the full story here.