Skip to main content

Winnti group's attack platform is based on decade old malware - Help Net Security

October 8, 2015

Winnti group's attack platform is based on decade old malware - Help Net Security

Help Net Security October 7, 2015
Kaspersky Lab experts tracking the activity of the Winnti group have discovered an active threat, called HDRoot, based on a 2006 HDD Rootkit installer. The development of the HDD Rootkit in 2006 is likely to be the work of someone who went on to join the Winnti group when it was set up, likely in 2009. There is a possibility that Winnti made use of third-party software or the utility and source code were available on the Chinese or other cybercriminal black market. Since Kaspersky Lab started to add detections, the group behind the attacks has started to adapt them – in less than one month, a new modification was identified.

Read more here!

Winnti group's attack platform is based on decade old malware - Help Net Security

Winnti group's attack platform is based on decade old malware - Help Net Security
Kaspersky logo

About Kaspersky

Kaspersky is a global cybersecurity and digital privacy company founded in 1997. With over a billion devices protected to date from emerging cyberthreats and targeted attacks, Kaspersky’s deep threat intelligence and security expertise is constantly transforming into innovative solutions and services to protect individuals, businesses, critical infrastructure, and governments around the globe. The company’s comprehensive security portfolio includes leading digital life protection for personal devices, specialized security products and services for companies, as well as Cyber Immune solutions to fight sophisticated and evolving digital threats. We help millions of individuals and nearly 200,000 corporate clients protect what matters most to them. Learn more at www.kaspersky.com.

Related Articles Press Releases