1 - 1: Malware Flashcards
The two components of malware
Propagation method and payload
What defines a virus?
Spreads based on human action
What defines a worm?
Spreads by finding vulnerabilities without human interaction
The RTM worm
Written by Robert Tappen Morris, a Cornell grad student, infected 10% of the Internet in 1988
Stuxnet
Infected Iranian nuclear enrichment centrifuges in 2010, crossing the virtual/physical barrier
What defines a Trojan horse?
Disguised as helpful programs that spread a payload while also working as intended
How do you protect from Trojan horses?
Application control limiting apps to only approved ones
Remote Access Trojans
Provide hackers remote access to and control of compromised systems
Adware
Malware designed to display ads but generates revenue for the malware author
Adware mechanisms
Changing default search engine, displaying pop-ups, replacing legitimate ads with malicious ads
Spyware
Malware that gathers information without user consent
Spyware mechanisms
Keylogging, monitor web browsing, searching hard drives and cloud storage
Potentially unwanted programs (PUPs)
Apps that are slipped in or bundled with other software installers
Ransomware
Encrypts files with a secret key, preventing access
WannaCry
A ransomware variant that spreads with EternalBlue in 2017 demanding Bitcoin
Cryptomalware
Malware that takes over victim computing power to mine for cryptocurrency