Skip to main content

Hackers Patch Web Browsers to Track Encrypted Traffic

posted onOctober 8, 2019
by l33tdawg
Bleeping Computer
Credit: Bleeping Computer

Researchers have found a new piece of malware, likely from an advanced threat group, that can patch Chrome and Firefox browsers to identify the encrypted traffic from a victim's computer.

The threat adds to the victim host Transport Layer Security (TLS) certificates, which help carry out man-in-the-middle (MitM) attacks on encrypted traffic.

Named Reductor, the threat was spotted in a campaign at the end of April that continued at least until August.  Apart from TLS traffic manipulation, it comes with the typical assortment of remote access functions - upload, download, and execute files.

Source

Tags

Security

You May Also Like

Recent News

Tuesday, November 19th

Friday, November 8th

Friday, November 1st

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th