{"id":968,"date":"2020-10-13T20:31:00","date_gmt":"2020-10-14T01:31:00","guid":{"rendered":"https:\/\/truxgoservers.com\/blog\/?p=968"},"modified":"2020-10-13T20:31:02","modified_gmt":"2020-10-14T01:31:02","slug":"a-victory-for-cybersecurity-researchers","status":"publish","type":"post","link":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/","title":{"rendered":"A Victory for Cybersecurity Researchers"},"content":{"rendered":"\n<p>Cybersecurity researchers have discovered a vulnerability in the Emotet malware and have been using it for six months to disrupt the distribution and operation of this threat. The vulnerability was discovered by James Quinn, a researcher at security company Binary Defense, who has been tracking Emotet for years to understand how it works and find ways to stop its threats.<\/p>\n\n\n\n<p>According to James Quinn: Most vulnerabilities and exploits that appear in the news benefit attackers and harm other users. However, it is important to note that malware is software that can also be flawed. Just as attackers can exploit flaws in legitimate software to do harm, defenders can reverse engineer malware to discover vulnerabilities and exploit them to combat malware.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">How Cybersecurity Researchers discovered this vulnerability<\/h2>\n\n\n\n<p>The vulnerability was discovered in February while Quinn was studying the code for an Emotet update. There he discovered that the malware kept an XOR encryption key inside a new Windows registry key. This key was designed for the system that prevented malware from being disabled after restarting computers.<\/p>\n\n\n\n<p>This took advantage of the discovery to write a PowerShell script that used the registry key mechanism to scan the system and generate a misshapen registry key. In this way, an error was forced in Emotet and it stopped working. This prevented the Emotet code from infecting new computers and at the same time prevented communication between the computers already infected with the Command and Control servers.<\/p>\n\n\n\n<p>Emotet is one of the most prominent malicious programs today. It was discovered in 2014 and is believed to operate from post-Soviet countries. It went from being a minor banking Trojan to a major threat with notorious scalability. The operation of Binary Defense and Team CYMRU represents a blow to these operations and that is why we can consider this as a victory and they are more than welcome.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Cybersecurity researchers have discovered a vulnerability in the Emotet malware and have been using it for six months to disrupt the distribution and operation of this threat. The vulnerability was discovered by James Quinn, a researcher at security company Binary Defense, who has been tracking Emotet for years to understand how it works and find [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":969,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[36],"class_list":["post-968","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-cybersecurity"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>A Victory for Cybersecurity Researchers - Truxgo Server Blog<\/title>\n<meta name=\"description\" content=\"We can say that it is always good news when we hear that a malware has been hit and will see the work that the Cybersecurity researchers did\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/\" \/>\n<meta property=\"og:locale\" content=\"es_MX\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"A Victory for Cybersecurity Researchers - Truxgo Server Blog\" \/>\n<meta property=\"og:description\" content=\"We can say that it is always good news when we hear that a malware has been hit and will see the work that the Cybersecurity researchers did\" \/>\n<meta property=\"og:url\" content=\"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/\" \/>\n<meta property=\"og:site_name\" content=\"Truxgo Server Blog\" \/>\n<meta property=\"article:published_time\" content=\"2020-10-14T01:31:00+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2020-10-14T01:31:02+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/10\/Cyberseguridad.jpeg\" \/>\n\t<meta property=\"og:image:width\" content=\"678\" \/>\n\t<meta property=\"og:image:height\" content=\"509\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Truxgo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Truxgo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/\"},\"author\":{\"name\":\"Truxgo\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\"},\"headline\":\"A Victory for Cybersecurity Researchers\",\"datePublished\":\"2020-10-14T01:31:00+00:00\",\"dateModified\":\"2020-10-14T01:31:02+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/\"},\"wordCount\":315,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/10\\\/Cyberseguridad.jpeg\",\"keywords\":[\"Cybersecurity\"],\"articleSection\":[\"Cybersecurity\"],\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/\",\"name\":\"A Victory for Cybersecurity Researchers - Truxgo Server Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/10\\\/Cyberseguridad.jpeg\",\"datePublished\":\"2020-10-14T01:31:00+00:00\",\"dateModified\":\"2020-10-14T01:31:02+00:00\",\"description\":\"We can say that it is always good news when we hear that a malware has been hit and will see the work that the Cybersecurity researchers did\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/#primaryimage\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/10\\\/Cyberseguridad.jpeg\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/10\\\/Cyberseguridad.jpeg\",\"width\":678,\"height\":509},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/a-victory-for-cybersecurity-researchers\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"A Victory for Cybersecurity Researchers\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"name\":\"Truxgo Server Blog\",\"description\":\"Cloud Server and Hosting Tutorials.\",\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\",\"name\":\"Truxgo Server Blog\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"width\":1250,\"height\":278,\"caption\":\"Truxgo Server Blog\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\",\"name\":\"Truxgo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"caption\":\"Truxgo\"},\"sameAs\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\"],\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/author\\\/truxgo\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"A Victory for Cybersecurity Researchers - Truxgo Server Blog","description":"We can say that it is always good news when we hear that a malware has been hit and will see the work that the Cybersecurity researchers did","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/","og_locale":"es_MX","og_type":"article","og_title":"A Victory for Cybersecurity Researchers - Truxgo Server Blog","og_description":"We can say that it is always good news when we hear that a malware has been hit and will see the work that the Cybersecurity researchers did","og_url":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/","og_site_name":"Truxgo Server Blog","article_published_time":"2020-10-14T01:31:00+00:00","article_modified_time":"2020-10-14T01:31:02+00:00","og_image":[{"width":678,"height":509,"url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/10\/Cyberseguridad.jpeg","type":"image\/jpeg"}],"author":"Truxgo","twitter_card":"summary_large_image","twitter_misc":{"Escrito por":"Truxgo","Tiempo de lectura":"2 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/#article","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/"},"author":{"name":"Truxgo","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e"},"headline":"A Victory for Cybersecurity Researchers","datePublished":"2020-10-14T01:31:00+00:00","dateModified":"2020-10-14T01:31:02+00:00","mainEntityOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/"},"wordCount":315,"commentCount":0,"publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/10\/Cyberseguridad.jpeg","keywords":["Cybersecurity"],"articleSection":["Cybersecurity"],"inLanguage":"es","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/","url":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/","name":"A Victory for Cybersecurity Researchers - Truxgo Server Blog","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/#primaryimage"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/10\/Cyberseguridad.jpeg","datePublished":"2020-10-14T01:31:00+00:00","dateModified":"2020-10-14T01:31:02+00:00","description":"We can say that it is always good news when we hear that a malware has been hit and will see the work that the Cybersecurity researchers did","breadcrumb":{"@id":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/#primaryimage","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/10\/Cyberseguridad.jpeg","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/10\/Cyberseguridad.jpeg","width":678,"height":509},{"@type":"BreadcrumbList","@id":"https:\/\/truxgoservers.com\/blog\/a-victory-for-cybersecurity-researchers\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/truxgoservers.com\/blog\/"},{"@type":"ListItem","position":2,"name":"A Victory for Cybersecurity Researchers"}]},{"@type":"WebSite","@id":"https:\/\/truxgoservers.com\/blog\/#website","url":"https:\/\/truxgoservers.com\/blog\/","name":"Truxgo Server Blog","description":"Cloud Server and Hosting Tutorials.","publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/truxgoservers.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/truxgoservers.com\/blog\/#organization","name":"Truxgo Server Blog","url":"https:\/\/truxgoservers.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","width":1250,"height":278,"caption":"Truxgo Server Blog"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e","name":"Truxgo","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","caption":"Truxgo"},"sameAs":["https:\/\/truxgoservers.com\/blog"],"url":"https:\/\/truxgoservers.com\/blog\/author\/truxgo\/"}]}},"_links":{"self":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/968","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/comments?post=968"}],"version-history":[{"count":1,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/968\/revisions"}],"predecessor-version":[{"id":970,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/968\/revisions\/970"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media\/969"}],"wp:attachment":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media?parent=968"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/categories?post=968"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/tags?post=968"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}