Other Blogs

[breadcrumb]

Featured Blogs

McAfee Labs

Analysis of a Chrome Zero Day: CVE-2019-5786

1. Introduction On March 1st, Google published an advisory [1] for a use-after-free in the Chrome implementation of the FileReader...

McAfee Labs

Analysis of Chrysaor Keylogging Mechanism Shows Power of Simple Malicious Code

Many attacks on mobile devices use social engineering to initially infect a victim’s system. They download malware and elevate privileges...

McAfee Labs

Analysis of LooCipher, a New Ransomware Family Observed This Year

Co-authored by Marc RiveroLopez. Initial Discovery This year seems to again be the year for ransomware. Notorious attacks were made...

McAfee Labs

Analyzing a Fresh Variant of the Dorkbot Botnet

This blog post was written by Sudhanshu Dubey. At McAfee Labs, we have recently observed a new variant of the...

McAfee Labs

Analyzing a Patch of a Virtual Machine Escape on VMware

This blog was written by Yakun Zhang. A virtual machine is a completely isolated guest operating system installation within a...

McAfee Labs

Analyzing and Identifying Issues with the Microsoft Patch for CVE-2018-8423

Introduction As of July 2019, Microsoft has fixed around 43 bugs in the Jet Database Engine. McAfee has reported a...

McAfee Labs

Analyzing CVE-2016-9311: NTPD Vulnerability Can Lead to Denial of Service

The network time protocol synchronizes time across various devices on a network. The network time protocol daemon (NTPD) is an...

McAfee Labs

Analyzing CVE-2017-0190: WMF Flaws Can Lead to Data Theft, Code Execution

CVE-2017-0190 is a recently patched vulnerability related to Windows metafiles (WMFs), a portable image format mainly used by 16-bit Windows...

McAfee Labs

Analyzing CVE-2017-3731: Truncated Packets Can Cause Denial of Service in OpenSSL

OpenSSL is a popular open-source library for SSL and is used by various software and companies across the world. In...

McAfee Labs

Analyzing CVE-2017-9791: Apache Struts Vulnerability Can Lead to Remote Code Execution

Apache Struts is a model-view-controller framework for creating Java web applications. Struts has suffered from a couple of vulnerabilities using...

McAfee Labs

Analyzing CVE-2021-1665 – Remote Code Execution Vulnerability in Windows GDI+

Introduction Microsoft Windows Graphics Device Interface+, also known as GDI+, allows various applications to use different graphics functionality on video...

McAfee Labs

Analyzing KillDisk Ransomware, Part 1: Whitelisting

This blog post was written by Sudhanshu Dubey. At McAfee Labs we recently analyzed the ransomware KillDisk. We will share...

McAfee Labs

Analyzing KillDisk Ransomware, Part 2: Variants and Screen Unlocking

This blog post was written by Sudhanshu Dubey. At McAfee Labs we recently analyzed the ransomware KillDisk. In part 1 of...

McAfee Labs

Analyzing Microsoft Office Zero-Day Exploit CVE-2017-11826

McAfee Labs has performed frequent analyses of Office-related threats over the years: In 2015, we presented research on the Office...

McAfee Labs

Analyzing Operation GhostSecret: Attack Seeks to Steal Data Worldwide

McAfee Advanced Threat Research analysts have uncovered a global data reconnaissance campaign assaulting a wide number of industries including critical...

McAfee Labs

Analyzing the First ROP-Only, Sandbox-Escaping PDF Exploit

The winter of 2013 seems to be “zero-day” season. Right after my colleague Haifei Li analyzed the powerful Flash zero...

McAfee Labs

Analyzing the Recent Windows Zero-Day Escalation of Privilege Exploit

Recently we caught a malicious sample that exploits a PDF vulnerability–CVE-2013-3346, we believe–and executes after a use-after-free condition occurs. During...

McAfee Labs

Analyzing the Target Point-of-Sale Malware

January 21, 2014:  As more information comes to light, surrounding these events, we continue to identify and analyze additional components...

Subscribe to McAfee Securing Tomorrow Blogs

Back to top