schizoidman@lemmy.zip to Technology@lemmy.worldEnglish · edit-22 days agoNotepad++ updater installed malwarewww.heise.deexternal-linkmessage-square46fedilinkarrow-up1357arrow-down114file-textcross-posted to: cybersecurity@sh.itjust.works
arrow-up1343arrow-down1external-linkNotepad++ updater installed malwarewww.heise.deschizoidman@lemmy.zip to Technology@lemmy.worldEnglish · edit-22 days agomessage-square46fedilinkfile-textcross-posted to: cybersecurity@sh.itjust.works
minus-squareSteveTech@aussie.zonelinkfedilinkEnglisharrow-up5·2 days agoMaybe it was used as some sort of privilege escalation? E.g. NP++ downloads an XML file to %TEMP%, some already present malware modifies it, then GUP downloads a payload and executes it with administrator permissions.
Maybe it was used as some sort of privilege escalation? E.g. NP++ downloads an XML file to %TEMP%, some already present malware modifies it, then GUP downloads a payload and executes it with administrator permissions.