Aug. 10, 2023, 7:34 p.m. | Denis Sinegubko

Sucuri Blog blog.sucuri.net

A vast majority of website malware employ the ever-familiar HTTP/HTTPS protocols for its malicious activities. But, we also periodically confront more interesting hybrid malware leveraging various other internet protocols. For example, malware sending email spam, DDoS tools creating floods of UDP packets, bruteforce tools trying to guess SSH credentials, phishing and credit card skimming malware exfiltrating data via web sockets, telegram bots — the list goes on.


During a recent investigation, we encountered a rather interesting piece of JavaScript malware …

black hat tactics bruteforce ddos dns email email spam floods google hacked websites http https hybrid internet malicious malware packets protocols redirects scam spam ssh support tech tech support tech support scam tools udp vast website website malware infections website security wordpress plugins and themes wordpress security

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Sr. Product Manager

@ MixMode | Remote, US

Corporate Intern - Information Security (Year Round)

@ Associated Bank | US WI Remote

Senior Offensive Security Engineer

@ CoStar Group | US-DC Washington, DC