Detekt Tool Puts Surveillance Spyware on Notice
Guarnieri, today, with a number of partners such as Amnesty International, The Electronic Frontier Foundation, Privacy International and Digitalle Gesellschaft, took a step toward scaling out his efforts to help activists and journalists in need with the release of Detekt.
Detekt is detection software that Guarnieri has been using for some time in an ad hoc fashion to help victims scan their Windows computers for certain spyware families. It’s written in Python and relies on malware scanners such as Yara, Volatility and Winpmem to look at memory for traces of the worst of the worst spyware, such as DarkComet, Xtreme, BlackShades, njRAT, ShadowTech, Gh0st and FinFisher from FinSpy and HackingTeam RCS.
Detekt does not remediate, and is not meant to be a substitute for antivirus or intrusion detection capabilities, Guarnieri said. It is limited to the malware families listed and is meant to be a quick triage for victims suspicious that their computers may have been compromised.
See more at: Detekt Tool Puts Surveillance Spyware on Notice http://wp.me/p3AjUX-sug