Hacker News new | ask | show | jobs
by password4321 1515 days ago
Did anyone ever decrypt that portion of Gauss, circa 2012?

That's the most effectively hidden malware code I know of.

https://arstechnica.com/information-technology/2013/03/the-w...

1 comments

No. I know a few antivirus companies and security searchers continue to run brute force cracks against it going on 10 years now.

Other modules in Gauss monitored transactions with Lebanese banks, so a logical assumption is it was deployed as part of a terror financing investigation against a very specific set of computers.