Chinese hackers abuse VLC Media Player to launch malware loader

Discussion in 'other security issues & news' started by hawki, Apr 5, 2022.

  1. hawki

    hawki Registered Member

    Joined:
    Dec 17, 2008
    Posts:
    6,130
    Location:
    DC Metro Area
    "Security researchers have uncovered a long-running malicious campaign from hackers associated with the Chinese government who are using VLC Media Player to launch a custom malware loader.

    The campaign appears to serve espionage purposes and has targeted various entities involved in government, legal, and religious activities, as well as non-governmental organizations (NGOs) on at least three continents...

    ...the attacker uses a clean version of VLC with a malicious DLL file in the same path as the media player's export functions..."

    https://www.bleepingcomputer.com/ne...se-vlc-media-player-to-launch-malware-loader/
     
  2. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    18,178
    Location:
    The Netherlands
    OK so this wasn't actually a supply chain attack, but they simply abused a legitimate copy of VLC Player that was already installed, to load malware? Perhaps Windows should figure out a way too prevent malware from using DLL sideloading techniques.
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.