Tag: Windows RAT

New Windows RAT Evades Detection for Weeks Using Corrupted DOS and PE Headers
News

New Windows RAT Evades Detection for Weeks Using Corrupted DOS and PE Headers

According to recent findings from Fortinet, cybersecurity researchers have uncovered a unique cyberattack that used malware with tampered DOS and PE headers. Essential components of a Windows PE file are the DOS (Disk Operating System) and PE (Portable Executable) headers, which include details about the executable. The PE header provides the metadata and information required for Windows to load and run the program, while the DOS header makes the executable file backward compatible with MS-DOS and enables the operating system to recognize it as a legitimate executable. Researchers Xiaopeng Zhang and John Simmons from the FortiGuard team found malware that had been operating on a hacked computer for a number of weeks read more about New Windows RAT Evades Detection for Weeks Using...