Unit 42 researchers are the elite cyber sleuths of Palo Alto Networks, a leading cybersecurity company.
Traditional static and dynamic analysis methods used by security tools often struggle against these new threats.
Obfuscation, unusual DOM interactions, and selective payload detonation are just a few tricks these malicious scripts employ to fly under the radar.
Dynamic HTML Generation: The code that steals data is created on the fly, making it difficult to detect statically.
Image-based Exfiltration: Hidden images with encoded data are loaded, sending the stolen information to the attacker without raising suspicion.
Keyword Triggers: The malware only activates when specific keywords are present, suggesting it targets specific user actions.
Unit 42 researchers developed advanced analysis techniques to track information flows within JavaScript code, exposing these stealthy exfiltration attempts.
This Cyber News was published on cybersecuritynews.com. Publication date: Fri, 22 Dec 2023 08:45:03 +0000