|
|
|
|
|
by ipython
834 days ago
|
|
Attributions are about more than the code flow. You also need infrastructure to funnel exfiltrated data back to yourself. As you can imagine, it’s harder to reuse someone else’s infrastructure. Easy to copy code patterns but you can’t exactly reuse domains, listening posts etc. |
|
How is that even possible and how does it help? A computer is like a state machine where a minuscule amount of states are logged. When the state is gone the trace is gone. And you don't control the other involved computers anyway. And what good does accessing "exfiltrated data" do?