back to article Insult to injury: Researcher remote pwns RAT of cuffed FireEye VXer

Derbycon: PhishMe researcher Paul Burbage has added insult to injury for a former FireEye intern cum arrested VXer by showcasing how to thoroughly pwn his remote access trojan. The Dendroid RAT sold for $300 on defunct hacker forum Darkode, which was scuppered in international federal police raids in which author Morgan …

  1. Anonymous Coward
    Anonymous Coward

    The latter often suffer from a lack of input validation leading to holes including remote code execution, shell uploading, and permanent cross-site scripting.

    I suppose it's somewhat reassuring that the RAT that took over your machine is programmed to the same level of quality as regular software these days.

    1. channel extended

      So thats where the Adobe programmers went!!!

  2. Spasticus Autisticus

    "Burbage says Dendroid and mobile RATs like it are making bank thanks to the lack of security integrity of many devices."

    Que? Is "making bank" like makin' bacon?

