Thursday, April 25, 2024
-Advertisement-
Reimagining Public Sector Analytics
Reimagining Public Sector Analytics
HomeNewsCyber SecurityMicrosoft confirms Chinese malware within gaming environments

Microsoft confirms Chinese malware within gaming environments

Follow Tech Observer on Google News

The US major has claimed that the malware driver, called ‘Netfilter’, is a rootkit that was detected communicating with Chinese command-and-control (C2) IPs

Google News

In a major technology breach, global tech giant has confirmed signing a malicious driver being distributed within gaming environments. The US major has claimed that the driver, called ‘', is a rootkit that was detected communicating with Chinese command-and-control (C2) IPs.

According to G Data malware analyst , the top techies first took notice of this event last week and later they were joined in by the wider infosec community in tracing and analysing the malicious drivers bearing the seal of Microsoft.

Top analysts believe that the incident has once again exposed threats to software supply-chain security, except this time it stemmed from a weakness in Microsoft's code-signing process. Microsoft said it is actively investigating this incident, although thus far, there is no evidence that stolen code-signing certificates were used.

The mishap seems to have resulted from the threat actor following Microsoft's process to submit the malicious Netfilter drivers and managing to acquire the Microsoft-signed binary in a legitimate manner.

“Microsoft is investigating a malicious actor distributing malicious drivers within gaming environments,” the company was quoted as saying by the website.

“We have suspended the account and reviewed their submissions for additional signs of malware,” Microsoft said.

According to Microsoft, the threat actor has mainly targeted the gaming sector specifically in China with these malicious drivers and there is no indication of enterprise environments having been affected so far.

Get the day's headlines from Tech Observer straight in your inbox

By subscribing you agree to our Privacy Policy, T&C and consent to receive newsletters and other important communications.
Tech Observer Desk
Tech Observer Desk
Tech Observer Desk at TechObserver.in is a team of technology reporters led by a senior editor who brings latest updates and developments from the world of technology.
- Advertisement -
EmpowerFest 2024
EmpowerFest 2024
EmpowerFest 2024
EmpowerFest 2024
- Advertisement -EmpowerFest 2024
- Advertisement -Education Sabha
- Advertisement -Veeam
- Advertisement -Reimagining Public Sector Analytics
- Advertisement -ESDS SAP Hana

Subscribe to our Newsletter

83000+ Industry Leaders read it everyday

By subscribing you agree to our Privacy Policy, T&C and consent to receive newsletters and other important communications.
- Advertisement -

Synology launches HD6500, aims to boost data security in India

Taiwanese firm Synology that specialises in network-attached storage (NAS) appliances solutions launched its latest high-density storage server, the HD6500, capable of accommodating up to 4.8 petabytes.

RELATED ARTICLES