Summary of Research
Malware authors may have a reputation for being slow to change what works for them. But this is not always the case. Some malware groups have taken the opportunity to try out new or "exotic" programming languages to evade detection by security experts, or to address specific pain points in their development process.
The BlackBerry Research & Intelligence team chose four unusual programming languages that were relevant to investigate. Programming languages include Go, D, Nim, and Rust. The BlackBerry researchers found that:
- These languages can counter existing signature-based detection
- The use of unusual languages makes reverse engineering more difficult
- New programming languages mask malware, making it not only harder to detect but also harder to crack
- The report shows who is using these languages and what developments can be expected. At the same time, the report includes a list of known malware that has been written in these unusual languages over the past ten years.
"Malware authors are known for their ability to adapt their skills and behavior and to take advantage of newer technologies. This report addresses less productive programming languages and their use in the malware landscape. It is crucial for the industry and customers to understand and monitor these trends, as they will only increase," said Eric Milam, VP Threat Research at BlackBerry.
To download the report, go to: https://www.blackberry.com/en/secure-communications/insights/blog