Just in:
Hong Kong’s R&D Receives International Recognition HKPC’s “InspecSpider” Wins Prestigious “Edison Award” in Innovation Field // A Feast Without Footprint – Shiok Kitchen Catering Redefines Delicious Dining with Carbon Neutral Catering // Get Based with Mr. Based: The Future of Community-Driven Cryptocurrency // Evolution and current state of global crypto adoption – Octa // Czar Workspace: a Modern Workspace Solutions in Dubai // NEOM welcomes leading industry figures and investors to Hong Kong showcase as part of its ‘Discover NEOM’ China tour // UAE Delegation Engages in Arab Parliament Committee Discussions // Navigating Business Setup in Dubai: A Comprehensive Guide by Czar Bizserv // The International Exhibition of Inventions in Geneva Reveals More than 40 Scientific and Technological Innovation Achievements from Hong Kong // Andertoons by Mark Anderson for Fri, 19 Apr 2024 // Belt and Road Initiative Sees Robust Trade Growth in First Quarter // Boeing Eyes 2030 Launch for Electric Flying Cars // Galaxy Macau Unveils the New Galaxy Kidz: An Edutainment Center for Play Time // Congress Is Set To Perform Well In Lok Sabha Polls In Karnataka // UN Acknowledges Uneven Progress on Energy Goals During Sustainability Week // Tech Giant Discharges Workers Following Disruptive Protest // Emirates Offer Support as Wildfires Ravage Greece // Sharjah Charity International Extends Helping Hand to Flood Victims // VinFast expands access to comprehensive aftersales network in France and Germany through agreement with Mobivia // Global Energy Leaders Chart Course for Sustainable Future at IRENA Assembly //

One of the oldest forms of POS malware has been tweaked to avoid detection

1489002805 istock pos terminal

istock-pos-terminal.jpg

POS terminals remain an attractive target for hackers.


Image: iStock

While threats like ransomware might have been making more headlines lately, point of sales (POS) malware is still very much active – mainly targeting retailers and hotel chains, while smaller businesses remain a prime target as they’re likely to have even less secure systems.

One of the earliest forms of this type of malware was RawPOS, which has been in operation since 2008. Despite being almost a decade old, RawPOS is still going strong and cybersecurity researchers at Cylance have discovered a new version of it which it said has remained undetected by an unnamed ‘legacy antivirus vendor’ for over a month.

ADVERTISEMENT

All that it took for this old form of malware to become undetectable was for the developers behind it to remove some of the code. Rather than adding new features, those behind the malware removed code from the new variant, therefore enabling it to avoid the most common signatures for POS malware.

The new variant appeared in January 2017 and was identical to an older version from 2015, save from the alterations to its signature, updating the naming scheme and removing a ‘help’ text from the binary.

“This variant has roughly no new functionality. It has even removed some functionality, which is rare considering developers code to add features. The big question is, why would a malware author remove code from their newer variant? This is most likely an attempt to evade signatures, as evidenced on the code areas that changed.” says the report.

Ultimately, it means that malware distributors can code in even minimal tweaks to bypass some cybersecurity defences – because many only know how to stop known threats, built with a specific type of code.

“The level of development effort that this author had to commit to avoid this signature has been shown to be pretty low,” the report adds and warns organisations that they shouldn’t be lulled into a “false sense of security”.

Organisations should therefore do all they can to ensure that their antivirus products are very much up to date and keep an eye on any alerts.

READ MORE ON CYBERCRIME

(via PCMag)

ADVERTISEMENT

ADVERTISEMENT
Just in:
NEOM welcomes leading industry figures and investors to Hong Kong showcase as part of its ‘Discover NEOM’ China tour // Abu Dhabi Environment Agency Endorses ADNOC’s Decarbonization Push // Hong Kong’s R&D Receives International Recognition HKPC’s “InspecSpider” Wins Prestigious “Edison Award” in Innovation Field // Get Based with Mr. Based: The Future of Community-Driven Cryptocurrency // Boeing Eyes 2030 Launch for Electric Flying Cars // Czar Workspace: a Modern Workspace Solutions in Dubai // Navigating Business Setup in Dubai: A Comprehensive Guide by Czar Bizserv // Global Cooperation Takes Center Stage at Dubai International Humanitarian Aid and Development Conference and Exhibition // Galaxy Macau Unveils the New Galaxy Kidz: An Edutainment Center for Play Time // Petrochemical Storm Clouds Gather Over Saudi Arabia // Sharjah Charity International Extends Helping Hand to Flood Victims // Andertoons by Mark Anderson for Sat, 20 Apr 2024 // Congress Is Set To Perform Well In Lok Sabha Polls In Karnataka // VinFast expands access to comprehensive aftersales network in France and Germany through agreement with Mobivia // UN Acknowledges Uneven Progress on Energy Goals During Sustainability Week // Imperative of Action Against Dubious Kuki-Chin Armed Movement // Qmiax Exchange Drives Global Cryptocurrency Compliance Process // UAE Delegation Engages in Arab Parliament Committee Discussions // Andertoons by Mark Anderson for Fri, 19 Apr 2024 // Tourist Boom to Fuel UAE Job Market //