As cited
Citation snapshot as of .
threat intel
Hackers abuse FTP server banners to deliver new Windows malware
Threat actors are embedding commands within FTP server banners to deliver two previously undocumented remote access trojans called E4del and PINHOLE targeting Windows systems. This technique uses a legitimate protocol feature as an evasion vector to hide malicious payloads.
Why it matters: Windows administrators and security teams need to monitor FTP banner traffic for suspicious commands, as this delivery method bypasses traditional endpoint detection focused on standard malware distribution vectors.
- Source published
- First seen by Cybersecurity Tracker