Aug. 10, 2023, 7:34 p.m. | Denis Sinegubko

Sucuri Blog blog.sucuri.net

A vast majority of website malware employ the ever-familiar HTTP/HTTPS protocols for its malicious activities. But, we also periodically confront more interesting hybrid malware leveraging various other internet protocols. For example, malware sending email spam, DDoS tools creating floods of UDP packets, bruteforce tools trying to guess SSH credentials, phishing and credit card skimming malware exfiltrating data via web sockets, telegram bots — the list goes on.


During a recent investigation, we encountered a rather interesting piece of JavaScript malware …

black hat tactics bruteforce ddos dns email email spam floods google hacked websites http https hybrid internet malicious malware packets protocols redirects scam spam ssh support tech tech support tech support scam tools udp vast website website malware infections website security wordpress plugins and themes wordpress security

Azure DevSecOps Cloud Engineer II

@ Prudent Technology | McLean, VA, USA

Security Engineer III - Python, AWS

@ JPMorgan Chase & Co. | Bengaluru, Karnataka, India

SOC Analyst (Threat Hunter)

@ NCS | Singapore, Singapore

Managed Services Information Security Manager

@ NTT DATA | Sydney, Australia

Senior Security Engineer (Remote)

@ Mattermost | United Kingdom

Penetration Tester (Part Time & Remote)

@ TestPros | United States - Remote