
SLEEPWALKER Backdoor Uses SMB, ICMP, DNS and VMware VMCI for Covert Communications
Researchers have uncovered a previously unknown Windows backdoor named SLEEPWALKER that can receive attacker commands through covert channels including raw network packets, DNS queries, SMB named pipes, ICMP ping traffic, and VMware’s VMCI communication layer. The malware is designed to remain dormant and avoid the usual signs of compromise. It does not contact a hard-coded […]
The post SLEEPWALKER Backdoor Uses SMB, ICMP, DNS and VMware VMCI for Covert Communications appeared first on Cyber Security News.