有25%的惡意程式會濫用合法網路服務,Pastebin及Telegram最受駭客青睞
· 2023-09-01

資安業者Recorded Future分析全球逾400款惡意程式家族,發現其中4成都利用合法服務以掩蓋其攻擊行動

_Recorded Future

在被濫用的即時傳訊程式中,Telegram以高達66.7%的比例遙遙領先第二名的Discord(27.8%),而Firebase Cloud Messaging與Slack則各占2.8%。有趣的是,不管是利用Telegram或Discord的惡意程式,都有超過8成屬於資訊竊取程式。

對於這些濫用合法服務展開攻擊的防禦上,Recorded Future建議組織可以考慮於企業網路中封鎖特定服務,或是調查特定服務的使用,使用包含YARA及Sigma規則的偵測類型,實施TLS網路監聽,探取主動威脅偵測,以及在攻擊模擬中加入濫用合法服務的場景等。

Popular articles
SBC Summit Canada to Make Player Safety a Key Pillar of 2026 Agenda
Marketing
PropellerAds Shared a New iGaming Case Study: 97,674 Installs and 12,701 Deposits in 3 Months
Marketing
Are you ready to maximize your earnings? Try ProPush.me Constructor!
Marketing
Brazil Proposes Raising Gambling Tax Rate to 24%, With Revenue Allocated to Social Security and Healthcare
Regulation
B2B Tech Infrastructure Gains Momentum in Philippine Gaming Sector
Southeast Asia
JILI Partners with Cricket Legend AB de Villiers (ABD) to Launch Exclusive Branded Game Series 100% 11
Sports Game
Gaming & Technology Expo Makes a Powerful Entrance in CDMX
Marketing
Vietnam's tightening online gaming policy creates new market opportunities
Southeast Asia
1spin4win grows its Latin American presence by partnering with Fortuna Juegos
Online Game
GAT CDMX 2025 Institutional Academy: Leaders and Experts Analyze the Present and Future of the Gaming Industry in Mexico and Lat
Sports Game
GAT Expo Puerto Rico Will Pulse with the New Era of Gaming in the Caribbean
Marketing
UK MPs reopen 2025 gambling inquiry as reform stalls
Regulation
Vietnam’s Controlled Gaming Shift Gains Ground, But Domestic Demand Still Lags
Southeast Asia
Indiana online casino bill stalls in House committee
Regulation
HUIDU Invites You to Booth T70 at iGB L!VE 2026 — Let’s Ignite London This July!
HUIDU Focus
Home
Game
Cooperation
Find
My