Posted by malvuln on Jul 20
Discovery / credits: Malvuln – malvuln.com (c) 2021
Original source:
https://malvuln.com/advisory/6f484fea8f6bb3974185fc856f37541b.txt
Contact: malvuln13 () gmail com
Media: twitter.com/malvuln
Threat: Trojan-Spy.Win32.SpyEyes.hqd
Vulnerability: Insecure Permissions
Description: The malware creates a dir with insecure permissions under c:
drive and grants change (C) permissions to the authenticated user group.
Standard users can rename the…
– Read More – Full Disclosure