Security Researchers Show Virus-Creation Method Foils Antivirus Protections

The Georgia Institute of Technology's Information Security Center says a form of copy protection typically used for securing intellectual property may make it difficult for researchers to analyze and detect malware. The technique, initially found in the Flashback Trojan, adds functions that specifically bind the malware to each victim’s machine, preventing security analysis of it. The Georgia Tech researchers say that hackers employing host identity-based encryption could encrypt critical parts of malware that makes analysis and automated detection even more difficult. They presented their research at last week’s Black Hat security conference in Las Vegas. (Technology Review)(Georgia Tech Information Security Center)

