Le Lézard
Classified in: Science and technology
Subject: SVY

Nyotron Discovers Next-Generation OilRig Attacks


SANTA CLARA, Calif., March 21, 2018 /PRNewswire/ -- Nyotron, a provider of the industry's first OS-Centric Positive Security solution to strengthen endpoint protection, has discovered a resurgence of OilRig attacks using a significantly more advanced malware toolkit.

Since 2015, the notorious Iran-linked APT group that launched OilRig has compromised critical infrastructure, banks, airlines, and government entities in countries such as Saudi Arabia, Qatar, United Arab Emirates, Turkey, Kuwait, Israel, Lebanon and the United States. In November 2017, Nyotron discovered new active OilRig attacks on a number of organizations across the Middle East. The OilRig group has significantly evolved its tactics, techniques and procedures, introduced next-generation malware tools and new data exfiltration methods. In total, the attackers used about 20 different tools - some were off-the-shelf, dual-purpose utilities, while others were previously unseen malware using Google Drive and SmartFile as well as the ISAPI filter for compromising IIS servers.

Among key advancements, the new variant of OilRig introduces a variety of new command and control (C&C) and data exfiltration capabilities:

"State attackers and advanced hacking groups are continually finding new approaches to augment previous successful attacks," said Nir Gaist, Founder and CTO of Nyotron. "This latest OilRig evolution serves as a reminder that security leaders need to strengthen their endpoint protection using the defense in depth approach to safeguard against malware adopting next-generation tools and techniques."

A full report on the company's findings can be found at www.nyotron.com/oilrig.

About Nyotron
Nyotron provides the industry's first OS-Centric Positive Security to strengthen desktop, laptop and server protection. By mapping legitimate operating system behavior, Nyotron's PARANOID understands all the normative ways that may lead to damage, such as file deletion, data exfiltration, encryption, and more. Focusing on these finite "good" actions allows PARANOID to be completely agnostic to threats and attack vectors. PARANOID seamlessly coexists with antivirus and next-generation antivirus solutions based on the negative security model and provides the last line of defense from modern state-level attacks. Nyotron is headquartered in Santa Clara, CA with an R&D office in Israel.

 

SOURCE Nyotron


These press releases may also interest you

at 17:05
PROS® , a leading provider of AI-powered SaaS pricing, CPQ, revenue management, and digital offer marketing solutions, today announced that Todd McNabb has joined PROS as Chief Revenue Officer. Reporting to Andres Reiner, PROS President and Chief...

at 17:00
BigBear.ai , a leading provider of AI-powered decision intelligence solutions for national security, supply chain management, and digital identity, today announced that it will publish its first quarter earnings release on Thursday, May 2, 2024, at...

at 17:00
Avicanna Inc. ("Avicanna" or the "Company") a biopharmaceutical company focused on the development, manufacturing, and commercialization of plant-derived cannabinoid-based products is pleased to announce that it has closed a non-brokered private...

at 17:00
Galaxy Digital Holdings Ltd.  ("Galaxy") announced that its affiliate, Galaxy Asset Management, ("GAM"), reported preliminary assets under management of $7.8 billion as of March 31, 2024. The 23.3% decrease in preliminary AUM compared to the prior...

at 17:00
Stoneridge, Inc. will webcast its first-quarter 2024 earnings conference call live on Thursday, May 2, 2024, at 9:00 a.m. ET with president and chief executive officer, Jim Zizelman, and chief financial officer, Matt Horvath....

at 16:59
Distinguished geochemist, space scientist, and Director of NASA's Jet Propulsion Laboratory, Dr. Laurie Leshin will be honored as the 2024 Woman of the Year by THE MUSES of the California Science Center Foundation. The annual luncheon, which will...



News published on and distributed by: