search
MSI installer malware
Trends
- 1Attackers use fileless malware delivered via small MSI package●The attack isn't rocket science but from an attacker perspective quite neat. The MSI is quite small and contains, appart
Security researchers are discussing a malware attack delivered through a small Windows installer package that contains little obviously suspicious code beyond attacker hostnames. The payload uses a randomly generated readme file to evade signature-based detection, then retrieves its code and executes it directly in memory, leaving minimal traces on disk. Observers describe the technique as technically simple but elegantly effective from an attacker's point of view.