Navngivne tre amerikanske antivirus producenter, hacket af Fxmsp band

Cyberkriminelle eller cyberkriminelle under nick Fxmsp, har stjålet og sat til salg kildekoder af antivirus produkter og andre fortrolige oplysninger.

ENbout it recently rapporteret Trojan–Killer. På grund af sikkerhedsmæssige årsager, navnene på de berørte kreditorer blev ikke offentliggjort.

alligevel, BleepingComputer portal managed to get from Internet-security company AdvIntel exclusive unedited evidence that disclosed Fxmsp victims.

AdvIntel collected information about Fxmsp band activity and working with it sellers (majorly Russian-speaking).

I særdeleshed, researchers intercepted correspondence where group participants discussed sales of stolen data. In messages discussed source codes of Symantec, McAfee og trend Micro.

Correspondence (in Russian) where group participants discussed sales of stolen data
Correspondence (in Russian) where group participants discussed sales of stolen data

AdvIntel specialists say that at their disposal is full correspondence of Fxmsp participants where mentioned Symantec, McAfee, Trend Micro and other vendors, actives footage that was used by cybercriminals in this operation, and examples of source codes from at least one affected company.

“A fourth antivirus company may also have been hacked, but it’s name and location remain unknown”, — reported AdvIntel representative.

According to content of messages, attackers stolen data through the vulnerability. They managed to invade in local corporate network and vendors were not aware about hijacking of their data. As movement inside the network was performed through legitimate Team Viewer og AnyDesk software, installed security solutions were not alarmed.

“Everything was quiet. If they would know that somethings was missing, it would be only in case of leaking this information in the Internet”, – said in one of the messages.

AdvIntel connected with all mentioned above producers and reported about an incident.

I første omgang Symantec denied that received any notifications from AdvIntel but later assured users that there is no security threat.

Ifølge trend Micro notification, cybercriminals managed to get access to one of company’s contractors laboratory and steal non-critical information about software debugging. Users’ data and source codes were not stolen, assure in Trend Micro.

McAfee ignored AdvIntel notification.


Om Trojan Killer

Carry Trojan Killer Portable på din memory stick. Vær sikker på, at du er i stand til at hjælpe din pc modstå eventuelle cyber trusler, hvor du går.

Tjek også

MageCart på Heroku Cloud Platform

Forskere har fundet flere MageCart Web Forplove On Heroku Cloud Platform

Forskere ved Malwarebytes rapporteret om at finde flere MageCart web skummere på Heroku cloud-platform …

Android Spyware CallerSpy

CallerSpy spyware masker som en Android chat applikation

Trend Micro eksperter opdagede malware CallerSpy, hvilke masker som en Android chat program og, …

Efterlad et Svar