Blog
January 12, 2022
2
MIN READ
MosaicRegressor Malware

Share this post

TABLE OF CONTENT

Malwares aren’t going anywhere. Today’s news cycles, especially during the COVID-19 pandemic, seem to be full of cyber incidents. One such malware MosaicRegressor, the Second-Ever Windows Unified Extensible Firmware Interface (UEFI) Rootkit that can stay on the motherboard flash memory located in the BIOS region of the PC, was found recently.

One other known instance of a UETI bootkit named LoJax, in the form of patched UEFI modules, was last discovered in 2018 by ESET. The malicious MosaicRegressor’s UEFI firmware images have been modified by the injection of multiple modules that permit the deployment of malwares on target devices.

MosaicRegressor, specifically, features multiple downloaders with numerous intermediary loaders for extensive payloads that can leave wide-ranging implications on victim devices. Aimed at espionage and data gathering purposes, MosaicRegressor has been found with targets on diplomatic institutions and NGOs in Asia, Europe, and Africa.

This advisory by SISA covers an in-depth preview of MosaicRegressor malware and its nature, the related scope of problem and possible implications, and recommendations on ways to respond to the MosaicRegressor malware. The next steps elaborated in this advisory also include determining how to guard against the MosaicRegressor malware within the context of a comprehensive cybersecurity program.

This technical advisory was proposed and researched by Ananya, Security Analyst at SISA’s Synergistic-SOC.

Get your copy now!

SHARE THIS POST

Heading 1

Heading 2

Heading 3

Heading 4

Heading 5
Heading 6

Lorem ipsum dolor sit amet, consectetur adipiscing elit, sed do eiusmod tempor incididunt ut labore et dolore magna aliqua. Ut enim ad minim veniam, quis nostrud exercitation ullamco laboris nisi ut aliquip ex ea commodo consequat. Duis aute irure dolor in reprehenderit in voluptate velit esse cillum dolore eu fugiat nulla pariatur.

Block quote

Ordered list

  1. Item 1
  2. Item 2
  3. Item 3

Unordered list

  • Item A
  • Item B
  • Item C

Text link

Bold text

Emphasis

Superscript

Subscript