• Latest
  • Trending
One of the world’s most advanced hacking groups debuts new Titanium backdoor

One of the world’s most advanced hacking groups debuts new Titanium backdoor

November 11, 2019
Albanian Opposition Supports Government Earthquake Relief Efforts

Albanian Opposition Supports Government Earthquake Relief Efforts

December 3, 2019
IDF sends aid mission to earthquake-stricken Albania

IDF sends aid mission to earthquake-stricken Albania

December 3, 2019
Albania: Future uncertain for thousands of earthquake homeless

Albania: Future uncertain for thousands of earthquake homeless

December 3, 2019
YMCA Kosovo support Albanian families after deadly earthquake

YMCA Kosovo support Albanian families after deadly earthquake

December 1, 2019
Number of human trafficking cases dramatically increase in Belgium

Number of human trafficking cases dramatically increase in Belgium

December 1, 2019
EU mobilises emergency support to Albania after deadly earthquake

EU mobilises emergency support to Albania after deadly earthquake

December 1, 2019
Albania earthquake: Rescue efforts wind down

Albania earthquake: Rescue efforts wind down

November 30, 2019
Mayor Veliaj Uses Earthquake as Propaganda Opportunity

Mayor Veliaj Uses Earthquake as Propaganda Opportunity

November 30, 2019
Four Thousand Albanians Made Homeless after Devastating Earthquake

Four Thousand Albanians Made Homeless after Devastating Earthquake

November 29, 2019
Rama Announces Dubious Anti-corruption Legislation

Rama Announces Dubious Anti-corruption Legislation

November 29, 2019
Reports of Aid Being Refused in Camps, Arrests For Misapropriation

Reports of Aid Being Refused in Camps, Arrests For Misapropriation

November 29, 2019
Fear, evacuations and introspection in Albania after deadly quake

Fear, evacuations and introspection in Albania after deadly quake

November 29, 2019
Saturday, February 27, 2021
Tirana Chronicle
No Result
View All Result
  • Albanian News
  • World News
    • Africa
    • Asia
      • China
      • North Korea
    • Canada
    • Europe
    • Latin America
      • Mexico
    • Middle East
    • Russian Federation
    • United Kingdom
    • United States
  • National Security
    • Military
    • Politics
    • Terrorism
  • Business
    • Economy
    • Science
  • Sports
    • Soccer
    • Tennis
    • Olympics
  • Culture
    • Art
    • Books & Literature
    • Education
    • Family
    • Food & Drink
    • Health
    • History
  • Environment
    • Agriculture
    • Climate Change
    • Forests
  • Albanian News
  • World News
    • Africa
    • Asia
      • China
      • North Korea
    • Canada
    • Europe
    • Latin America
      • Mexico
    • Middle East
    • Russian Federation
    • United Kingdom
    • United States
  • National Security
    • Military
    • Politics
    • Terrorism
  • Business
    • Economy
    • Science
  • Sports
    • Soccer
    • Tennis
    • Olympics
  • Culture
    • Art
    • Books & Literature
    • Education
    • Family
    • Food & Drink
    • Health
    • History
  • Environment
    • Agriculture
    • Climate Change
    • Forests
No Result
View All Result
Tirana Chronicle
No Result
View All Result

One of the world’s most advanced hacking groups debuts new Titanium backdoor

Malware hides at every step by mimicking common software in long multi-stage execution.

November 11, 2019
in Crime, Featured, National Security, Tech, World News
0
Home Crime
Post Views: 12

 

One of the world’s most most technologically advanced hacking groups has a new backdoor that’s every bit as sophisticated as its creators.

Dubbed Titanium by the Kaspersky Lab security researchers who discovered it, the malware is the final payload delivered in a long and convoluted attack sequence. The attack chain uses a host of clever tricks to evade antivirus protection. Those tricks include encryption, mimicking of common device drivers and software, memory-only infections, and a series of droppers that execute the malicious code a multi-staged sequence. Yet another means of staying under the radar is hidden data delivered steganographically in a PNG image.

Named after a password used to encrypt a malicious archive, Titanium was developed by Platinum, a so-called advanced persistent threat group that focuses hacks on the Asia-Pacific region, most likely on behalf of a nation.

RelatedPosts

No Content Available

“The Titanium APT has a very complicated infiltration scheme,” Kaspersky Lab researchers wrote in a post. “It involves numerous steps and requires good coordination between all of them. In addition, none of the files in the file system can be detected as malicious due to the use of encryption and fileless technologies. One other feature that makes detection harder is the mimicking of well-known software.”

Titanium uses several different methods to initially infect its targets and spread from computer to computer. One is a local intranet that has already been compromised with malware. Another vector is an SFX archive containing a Windows installation task. A third is shellcode that gets injected into the winlogon.exe process (it’s still unknown how this happens). The end result is a stealthy and full-featured back door that can:

  • Read any file from a file system and send it to an attacker-controlled server
  • Drop a file onto or delete it from the file system
  • Drop a file and run it
  • Run a command line and send execution results to the attacker’s control server
  • Update configuration parameters (except the AES encryption key)

Platinum has been operating since at least 2009, according to a detailed report Microsoft published in 2016. The group is primarily focused on the theft of sensitive intellectual property related to government interests. Platinum often relies on spear phishing and zero-day exploits.

Interestingly, Kaspersky Lab says it has yet to detect any current activity related to Titanium. It’s not clear if that’s because the malware isn’t in use or if it’s just too hard to detect infected computers.

Source: Arstechnica
Tags: hacking groupsKaspersky LabtechnologicallyTitanium
ShareTweetShare

Related Posts

Albanian Opposition Supports Government Earthquake Relief Efforts
Albanian News

Albanian Opposition Supports Government Earthquake Relief Efforts

December 3, 2019
IDF sends aid mission to earthquake-stricken Albania
Albanian News

IDF sends aid mission to earthquake-stricken Albania

December 3, 2019
Albania: Future uncertain for thousands of earthquake homeless
Albanian News

Albania: Future uncertain for thousands of earthquake homeless

December 3, 2019
YMCA Kosovo support Albanian families after deadly earthquake
Albanian News

YMCA Kosovo support Albanian families after deadly earthquake

December 1, 2019
Number of human trafficking cases dramatically increase in Belgium
Albanian News

Number of human trafficking cases dramatically increase in Belgium

December 1, 2019
Next Post
Billionaires’ wealth falls as Chinese economy stalls

Billionaires' wealth falls as Chinese economy stalls

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

3 × three =

Translate

Popular Post

Albanian Opposition Supports Government Earthquake Relief Efforts
Albanian News

Albanian Opposition Supports Government Earthquake Relief Efforts

December 3, 2019
0

  Democratic Party leader Lulzim Basha stated the opposition supports the government in its efforts to help citizens affected by...

Read more
Albania government denies links to organised crime

Albania government denies links to organised crime

May 30, 2019
The Brief: Western Balkans – a test for the EU’s expansion appetite

The Brief: Western Balkans – a test for the EU’s expansion appetite

May 31, 2019
Armaldo Kllogjeri to hold recital at Tirana’s Amphitheatre

Armaldo Kllogjeri to hold recital at Tirana’s Amphitheatre

May 31, 2019
Abu Sayyaf’s Dutch hostage killed in firefight in Sulu

Abu Sayyaf’s Dutch hostage killed in firefight in Sulu

June 1, 2019
  • About Us
  • Creative Commons
  • Disclaimer
  • Privacy Policy
  • Terms & Conditions
  • Contact Us

Topics

Follow Us

About Us

Tiranachronicle.com is part of Tirana Chronicle Media Group LLC, which delivers daily news around the globe.

© 2011 Tirana Chronicle

No Result
View All Result
  • Albanian News
  • World News
    • Africa
    • Asia
      • China
      • North Korea
    • Canada
    • Europe
    • Latin America
      • Mexico
    • Middle East
    • Russian Federation
    • United Kingdom
    • United States
  • National Security
    • Military
    • Politics
    • Terrorism
  • Business
    • Economy
    • Science
  • Sports
    • Soccer
    • Tennis
    • Olympics
  • Culture
    • Art
    • Books & Literature
    • Education
    • Family
    • Food & Drink
    • Health
    • History
  • Environment
    • Agriculture
    • Climate Change
    • Forests

© 2011 Tirana Chronicle