Hackers hijacked the eScan Antivirus update mechanism in malware campaign
Security Affairs
APRIL 24, 2024
A malware campaign has been exploiting the updating mechanism of the eScan antivirus to distribute backdoors and cryptocurrency miners. GuptiMiner connects directly to malicious DNS servers, bypassing the DNS network entirely. The final payload distributed by GuptiMiner was also XMRig.
Let's personalize your content