Posted by malvuln on Dec 13

Discovery / credits: Malvuln – (c) 2021
Original source:
Contact: malvuln13 () gmail com

Threat: Backdoor.Win32.Mechbot.a
Vulnerability: Insecure Permissions
Description: The malware creates a dir with insecure permissions under c:
drive granting change (C) permissions to the authenticated user group.
Standard users can rename the executable…
Read More – Full Disclosure

By |2021-12-13T12:19:26-05:00December 13th, 2021|