A new strain of an older malware is attacking the Department of Defense and associated defense contractors. The new strain is called Sykipot, a redesigned version of phishing malware making the rounds in 2006. AlienVault has tracked the origin of the attacks back to Chinese cyber attackers. Once again, the weakest link in cyber security is the end user.
Tracing the malware’s communications, Blasco was able to determine that the US servers that seemed to receive the malware’s messages were really just a proxy for servers in China.