Malicious Iis Extensions Gaining Increasing Interest Of Cyber Criminals
Threat actors are abusing the Internet Information Service increasingly on a concerning level. They are abusing extensions to backdoor servers as an attempt to establish a “durable persistence mechanism”. A new warning from the Microsoft Defender Research Team stated that IIS backdoors are also harder to detect since they mostly reside in the same directories as legitimate modules. Target applications use these modules and they follow the same code structure as clean modules....