Skip to main content

Hackers Patch Web Browsers to Track Encrypted Traffic

posted onOctober 8, 2019
by l33tdawg
Bleeping Computer
Credit: Bleeping Computer

Researchers have found a new piece of malware, likely from an advanced threat group, that can patch Chrome and Firefox browsers to identify the encrypted traffic from a victim's computer.

The threat adds to the victim host Transport Layer Security (TLS) certificates, which help carry out man-in-the-middle (MitM) attacks on encrypted traffic.

Named Reductor, the threat was spotted in a campaign at the end of April that continued at least until August.  Apart from TLS traffic manipulation, it comes with the typical assortment of remote access functions - upload, download, and execute files.

Source

Tags

Security

You May Also Like

Recent News

Friday, May 31st

Wednesday, May 29th

Tuesday, May 28th

Friday, May 24th

Thursday, May 23rd

Tuesday, May 21st

Monday, May 20th

Thursday, May 16th