No content since 2004
Feel free to donate
Chris @ MyITforum
Subscribe in a reader
Subscribe to Chris Mosby at myITforum.com by Email
Jarno Niemelä from our lab did a study on malicious Windows binaries that have been signed (with Microsoft Authenticode). Turns out, we have copies of tens of thousands of malware samples that have been signed. Malware authors are attempting to use code signing techniques to their advantage. Details of this surprising find are presented in Jarno's presentation file, which can be downloaded from here (PDF). It was first presented in the CARO 2010 Technical Workshop in May 2010.
No Comments