A new Astaroth Trojan campaign targeting Brazil and European countries is currently exploiting the Avast antivirus and security software developed by GAS Tecnologia to steal information and load malicious modules.
According to Cybereason’s Nocturnus team which discovered the new Astaroth strain, just like previous installments, the malware uses “legitimate, built-in Windows OS processes to perform malicious activities and deliver a payload without being detected” but it also makes use “of well-known tools and even antivirus software to expand its capabilities.”
Falanx Group Ltd (LON:FLX), through its subsidiaries, provides cyber defence and intelligence services to blue chip and government clients worldwide. It operates through Falanx Cyber Defence and Falanx Intelligence divisions.