Cisco Talos Blog 中文 关注 从 PDB 字符串到 MaaS:追踪被中文威胁行为体使用的商品化 BadIIS 生态系统 Cisco Talos 发现了一种 BadIIS 变种,其可通过嵌入的"demo.pdb"字符串进行识别,该变种作为通用恶意软件运作,很可能被多个操作用中文的犯罪团伙在恶意软件即服务(MaaS)模式下共享或出售,以实现持续盈利。 From PDB strings to MaaS: Tracking a commodity BadIIS ecosystem used by Chinese-speaking threat blog.talosintelligence.com Cisco Talos Blog 中文 RSS thenote.app