#trashagent — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #trashagent, aggregated by home.social.
-
First day of #100daysOfYara
This YARA rule detects a technique used in #TrashAgent malware. The malware has a hard-coded list of apps to check for on the system. This YARA looks for the way they parse the list.
In the image, the list is demarcated with "nepo"rule at end
1/7