Hacker Newsnew | past | comments | ask | show | jobs | submitlogin
Old backdoor, new obfuscation (sans.edu)
39 points by kencausey on March 19, 2023 | hide | past | favorite | 1 comment


Surely this sort of crap is heuristically detectable?

    def opaque_fct_6_guXM09JTqW(opaque_fct_6_guXM09JTqW_0, opaque_fct_6_guXM09JTqW_1, opaque_fct_6_guXM09JTqW_2, opaque_fct_6_guXM09JTqW_3, opaque_fct_6_guXM09JTqW_4):
        if (opaque_fct_6_guXM09JTqW_1 > opaque_fct_6_guXM09JTqW_0):
            return True
        if (opaque_fct_6_guXM09JTqW_4 <= opaque_fct_6_guXM09JTqW_1):
            return True
        ...
        if (opaque_fct_6_guXM09JTqW_0 <= opaque_fct_6_guXM09JTqW_1):
            return True
        if (opaque_fct_6_guXM09JTqW_0 >= opaque_fct_6_guXM09JTqW_1):
            return False




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: