Want to read Slashdot from your mobile device? Point it at m.slashdot.org and keep reading!

 



Forgot your password?
typodupeerror
For the out-of-band Slashdot experience (mostly headlines), follow us on Twitter, or Facebook. ×

+ - New Attack Binds Malware in Parallel to Software Downloads->

msm1267 writes: Researchers from Ruhr University in Bochum, Germany, have developed a proof-of-concept attack in which they are able to inject malicious code into a download that runs in parallel to the original application, without modifying the code.

The attack targets free and open source software, in particular those where code signing verification and other integrity checks are lacking in the download process.

Rather than spike the original application with malware, the researchers use a binder that links the binder application, malware and original download.

Link to Original Source
This discussion was created for logged-in users only, but now has been archived. No new comments can be posted.

New Attack Binds Malware in Parallel to Software Downloads

Comments Filter:

The first myth of management is that it exists. The second myth of management is that success equals skill. -- Robert Heller

Working...