Russian hackers turn Kazuar backdoor into modular P2P botnet
…The messages are AES-encrypted and serialized with Google Protocol Buffers (Protobuf). The Worker module performs the actual espionage operations, such as: keylogging capturing screenshots harvesting data from the filesystem performing system…
