Whitelist Me, Maybe? When Cyber Criminals Try A Daring Approach to Evade Detection

Thu, 22 Jul 2021 @ 11:00:00

On February, Fortinet executives received an email from a company asking to whitelist their software, claiming it is a false-positive that inflicts a significant impact on their business. At first glance everything seemed innocent though that definitely wasn’t the case.

We’ll present our investigation and break down how we uncovered an unknown malware distribution infrastructure using unique set of tools and techniques.