Dec. 21, 2023, 5:23 p.m. | /u/OrganicAbilitys

cybersecurity www.reddit.com

# 1. Steganography

We identified a new phishing campaign utilizing steganography, a technique historically seldom used due to its complexity. However, its application has notably increased.
**This new campaign employs steganography in multiple stages:**


1. The modified “Google Update” app downloads multiple PE files and an image containing a DLL
2. TrueUpdate, downloaded in the previous step, extracts and decrypts the DLL from the image file with 256 bytes XOR key and transfers control to the received DLL
3. Then …

app application campaign complexity cybersecurity dll downloads files google google update image malware november november 2023 pe files phishing phishing campaign steganography threats update

Principal - Cyber Risk and Assurance - Infra/Network

@ GSK | Bengaluru Luxor North Tower

Staff Security Engineer

@ Airwallex | AU - Melbourne

Chief Information Security Officer

@ Australian Payments Plus | Sydney, New South Wales, Australia

TW Test Automation Engineer (Access Control & Intrusion Systems)

@ Bosch Group | Taipei, Taiwan

Consultant infrastructure sécurité H/F

@ Hifield | Sèvres, France

SOC Analyst

@ Wix | Tel Aviv, Israel