Skip to content. Skip to navigation

Ian Lawrence

Sections
Personal tools
You are here: Home Blog Gozi Trojan

Gozi Trojan

Russian malware authors are finding new ways to steal and profit from data which used to be considered safe from thieves because it was encrypted using SSL/TLS. Originally, this analysis intended to provide insight into the mechanisms used to steal that data, but it became an investigation into the growing trend of malware sold not as a product, but as a service. Eventually it lead to an alarming find and resulted in an active law enforcement investigation.

The full write up is on secure works here

Some very interesting analysis techniques. Much like detective work which is exactly what software testing is too

_____
tags:
Friday, March 23, 2007 in Code  | Permalink |  Comments (0)
del.icio.us   Digg   Yahoo   Google   Spurl