News

Malware Could Be Using Legitimate Signature Certificates

When it comes to installing software on your computer, we often have to take it on faith that the software is safe to use. As an extra precaution, the latest step is to allow companies to use “certificates”, digital signatures that show that a trusted company created the software. A group known for creating malware may have found a way around this system though as some of their nasty programs are using legitimate signature certificates.

By using legitimate signature certificates your computer trusts the software and installs it without further hassle, the problem being that the software is less than safe and, in fact, is just malware (or malicious software). According to Symantec, the group known as Suckfly has used no less than nine different singing certificates from nine different companies since 2014.

Categorising the found malware into groups, Symantec found that 11 of the identified tools could be used for backdooring into your system. While others could be used to log and find out your information, some even checked your network traffic to find out what could be used to access your system through port scanning software.

With so many certificates being stolen and used for signing malware, and it becoming a common practise amongst malware creators, could we see the need for another way of finding and checking software is legitimate if these techniques are so easily bypassed?

 

Gareth Andrews

Disqus Comments Loading...

Recent Posts

Varmilo VEA88 Charcoal TKL Gaming Keyboard, MX-Red, White-LED

TKL mechanical keyboard with 88 keys in a UK ISO layout V-silk PBT keycaps with…

44 seconds ago

Refract Gaming Indigo – 1440p/4K Pro Pre-Built Gaming PC

Pre-built gaming PC for elite tier gaming and high-quality streaming Cherry-picked hardware and hand-built by…

2 mins ago

Next Major Title Update For Dragons Dogma 2 Has Been Revealed

As I said before in this article about the best mod to get for Dragons…

3 mins ago

Hardware Labs Black Ice SR2 Xtreme+ 140 MP Multi Port Radiator

The Black Ice® SR2™ MP delivers the next level in ultra-stealth PC radiator performance. Bringing…

29 mins ago

BenQ ZOWIE S2-C Gaming Mouse For Esports

Reduced weight for additional movement flexibility and stability Soft resilient cable produces less bounce and…

31 mins ago

Kolink KL-N200 15.6″ Laptop/Notebook Cooler

USB powered cooler for 15.6” gaming laptops and notebooks Two integrated 140mm fans with speed…

47 mins ago