A recently discovered piece of malware has a unique way of communicating with its creator—through an internet meme posted on Twitter.
The mysterious hacker has been using the "What if I told you" meme to secretly tell a Windows-based strain of malware when to grab screenshots from infected PCs, according to security firm Trend Micro.
SEE ALSO: Why every super paranoid internet user needs a cheap ChromebookAlthough the internet meme look like an ordinary digital image, a simple command is hidden in the file's metadata, Trend Micro VP Mark Nunnikhoven says. The malware, on other hand, has been designed to look up the hacker's Twitter account and scan image files for the secret commands.
"The messages used for this malware are very small (typically one word) meaning that they can be hidden between the metadata and actual pixel layout without changing the image itself," Nunnikhoven said in an email.
The hacker appears to have only posted two malicious memes — on Oct. 25 and 26 — with the command "/print," which will order infected Windows PCs to take a screenshot. Other hidden commands the hacker could've sent through the memes include "/clip" to capture clipboard copied content, and "/processos" to retrieve a list of running processes over the PC.
The practice of concealing messaging in nontext files such as images or video is called steganography, and it's become an effective way for hackers to sneak malicious code onto people's computers or send hidden commands over the open web.
"Most networking monitoring programs won't notice anything odd about access to Twitter.com," Nunnikhoven added. "A site that's based around a timeline like Twitter also allows the attacker to sequence commands for the malware. This can be an effective way of building a solid command and control channel."
The good news is that Twitter has disabled the hacker's account on its platform. But it isn't clear how the mysterious attacker was circulating the malware, a Trojanized .exe file.
In response to Trend Micro's findings, Twitter told PCMag: "Keeping people safe and secure on Twitter is our top priority. If content on Twitter is used for malicious purposes, we take action and remove it. Twitter plays no part in the distribution of the malware involved in this campaign."
However, the company didn't address questions over what Twitter can do to stop similar meme-based malware schemes in the future. Meanwhile, others have shown you can cram a whole lot of data, include ZIP archives, inside an image on Twitter, raising the possibility that hackers could employ the same tactic again.
Copyright © 2023 Powered by
Hacker uses internet meme to send hidden commands to malware-燕尔新婚网
sitemap
文章
659
浏览
2172
获赞
12
Elon Musk threatens to move Tesla HQ to Texas or Nevada
Elon Musk is sick and tired of all these rules meant to slow the spread of the coronavirus, and you'Elon Musk is arguing with his own Community Notes on X
X's Community Notes feature is a fact-checking tool that's supposed to allow contributors to add conAll the states Pornhub is blocked in as of January 1
New Year's Day has come and gone, which means Pornhub is now blocked in 16 U.S. states.The site blocTikTok users bombard Congress with phone calls to save their favorite app
TikTok, the massively popular mobile viral video platform, has gone on the offensive to stop CongresPlay as NFL MVP Lamar Jackson in a new Oculus virtual reality game
Sports are on the back burner right now (for obvious pandemic-related reasons), but football fans maAmazon is testing new driver safety features following shootings
Amazon Flex is piloting new safety features for its drivers, according to a report from The InformatFortify your finances: A tactical guide to shielding against scams in 2024
Table of ContentsTable of ContentsAs our lives grow increasingly more and more digitally dependent,'Scram!' TikTok just made it to Taylor Swift's Eras Tour
It's almost the end of Taylor Swift's Eras Tour (almost 150 shows later), and dancer Kameron SaunderCreatively, a new job platform, launches to help designers and other creatives find work
For designers, illustrators, and photographers, LinkedIn just doesn't cut it. That's why CreativelyHow to unblock porn for free
TL;DR:Unblock porn sites with a VPN. The best service for unblocking free porn sites is ExpressVPN.YSupreme Court questions if states can enforce social media censorship
The Supreme Court is trying to decide how far the First Amendment reaches when it comes to social meHow to unblock Xnxx for free
TL;DR:Unblock porn sites with a VPN. The best service for unblocking porn sites is ExpressVPN.The frLinkedIn says its extra intense clipboard snooping in iOS is a bug
LinkedIn's iOS app has taken the ongoing issue of snooping at users' clipboards to whole, new level.Best Android phone deal: Buy a Samsung Galaxy Z Flip 5, get $150 in Amazon credit
GET $150 CREDIT: As of Feb. 20,buy the Samsung Galaxy Z Flip 5 (256GB) at Amazon and get a $150 promBest Amazon Pharmacy deal: Try Amazon Pharmacy and get a free $15 gift card
FREE $15 GIFT CARD:As of Dec. 31, get a free $15 Whole Foods gift card with your first Amazon Pharma