Chinese Remote Access Trojan: TAIDOOR
Marcus W. Johnson
1G |Cyber Threat Intelligence Engineer |MSc. Cybersecurity |SASE |SSE |ISC2 CC |ICS/OT Risks |MITRE ATT&CK Defender |Adversary Emulation & Detection Engineer |SOC/XDR |IAM|AI/ML |Security Controls Validation Engineer|
This report gives a very detail anatomy of the TAIDOOR trojan, if you have a good understanding of malware analysis or reverse engineering you will understand that this virus has the ability to remain hidden and go undetected by some of the most sophisticated Anti-virus programs because it utilises fileless attack techniques with a complex stream cipher, this is why this report https://us-cert.cisa.gov/ncas/analysis-reports/ar20-216a is a must-read report by all cyber security professionals to put us in a better position to defend and stand up to protect our cyber space.