Hunter-Killer is a sophisticated type of malware primarily designed to actively seek out and neutralize other malware present on a system.
It operates by identifying and removing competing threats that potentially pose a serious risk to the security and privacy of affected systems.
Cybersecurity researchers at Picus Security recently discovered a 333% surge in Hunter-Killer malware that neutralizes network security controls.
Live attack simulation Webinar demonstrates various ways in which account takeover can happen and practices to protect your websites and APIs against ATO attacks .
Constantly evolving adversary tactics demand endless attention from security experts. Prioritizing threats amidst the multitude poses tough challenges, and covering every risk is virtually impossible.
That’s why Picus Security actively promotes security awareness by guiding defensive efforts strategically.
Analyzing more than 600,000 malware samples, it has unveiled the top ten attack techniques with mitigation suggestions.
In the fourth-year report, the Picus Labs team studies malware behavior, mapping actions to the MITRE ATT&CK Framework from the aggregated samples.
Red Report uncovered a rise in ‘Hunter-killer’ malware, which mirrors the silent submarines. Evasive and adept at neutralizing controls, it marks a significant trend in this year’s top ATT&CK techniques.
Malware targeting the defenses has surged significantly by 333% from 2022 to 2023. Besides this, 70% now use stealth tactics, making detection tougher for defenders or security researchers.
Moreover, T1027 Obfuscated Files or Info rose by 150%, showcasing adversaries’ effectiveness in hiding malicious activities and preventing digital forensics and incident response.
The T1071 App Layer Protocol surged 176%, aiding data theft and employed by ransomware groups in advanced double extortion tactics.
Here below, we have mentioned all the recommendations provided by the security analysts:-
Stay updated on Cybersecurity news, Whitepapers, and Infographics. Follow us on LinkedIn & Twitter.
A critical security flaw has been uncovered in certain TP-Link routers, potentially allowing malicious actors…
SilkSpecter, a Chinese financially motivated threat actor, launched a sophisticated phishing campaign targeting e-commerce shoppers…
The research revealed how threat actors exploit SEO poisoning to redirect unsuspecting users to malicious…
Black Basta, a prominent ransomware group, has rapidly gained notoriety since its emergence in 2022…
CVE-2024-52301 is a critical vulnerability identified in Laravel, a widely used PHP framework for building…
A critical vulnerability has been discovered in the popular "Really Simple Security" WordPress plugin, formerly…