Skip to main content

Should you worry about memory-only malware?

posted onFebruary 4, 2014
by l33tdawg

The recent Target data heist of more than 40 million credit card records has many worrying about the impact of memory-only malware. The Target malware, a variant of BlackPOS, is part of a Trojan horse family known as Trojan.POSRAM. After the initial exploitation, these programs simply load themselves into RAM -- they don't install themselves on the hard drive.

The lack of "software footprint" makes RAM-only malware programs elusive. Some people say they're to be truly feared. Should we worry about them more than other malware programs? In a word: No.

The panic over memory-only Trojans reminds me of all the doomsday prophecies about rootkit malware, which could "easily hide from antivirus programs." It brings to mind past hysteria about roving bot worms, email attachment viruses, boot viruses, and DNS hijackers. Those newly discovered types of malware sounded scary at first, but antimalware programs now readily detect them all. The only challenge to antimalware software is keeping up with the sheer number of new malware programs that appear every day. Detecting an entire type of malware has rarely been a problem.

Source

Tags

Viruses & Malware

You May Also Like

Recent News

Friday, November 29th

Tuesday, November 19th

Friday, November 8th

Friday, November 1st

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th