// THREAT DETECTION AND DATA PRIVACY TERM

Zombie

A 'zombie' in cybersecurity refers to a computer or device that has been secretly compromised and is being controlled by a hacker. These devices are often part of a larger network, known as a botnet, and are used to launch attacks or distribute malicious content without the owner's knowledge.

Zombie — illustration from Wikipedia
Image via Wikipedia

TECHNICAL DEFINITION

A zombie is a compromised computing device, such as a PC, server, or IoT endpoint, remotely controlled by an attacker (often a 'bot herder') without the legitimate owner's authorization, typically forming part of a botnet to execute distributed malicious activities like DDoS attacks, spam campaigns, or malware dissemination.

BACKGROUND

Computer security is a subdiscipline within the field of information security. It focuses on protecting computer software, systems, and networks from threats that can lead to unauthorized information disclosure, theft, or damage to hardware, software, or data, as well as to the disruption or misdirection of the services they provide.

READ MORE ON WIKIPEDIA

SYNONYMS & ALIASES

  • Bot
  • compromised host
  • infected machine
  • puppet device
  • drone
  • exploited system

USAGE NOTE

The term 'zombie' is most often used to describe an individual compromised machine that is part of a larger botnet used for malicious purposes.

DEVELOPERS

Organizations developing technology related to Zombie.

  • Palo Alto Networks

    Develops advanced threat prevention technologies, including WildFire cloud-based threat analysis, that identify and neutralize botnet activity and compromised 'zombie' systems on networks.

  • CrowdStrike

    Offers endpoint protection, cloud security, and threat intelligence solutions that detect, prevent, and respond to threats, including identifying and remediating endpoints that have been compromised and turned into 'zombies' by botnets.

  • Fortinet

    Provides comprehensive cybersecurity solutions, including next-generation firewalls and endpoint protection, with FortiGuard Labs conducting extensive research to detect and block botnet command-and-control communications and 'zombie' activity.

  • Check Point Software Technologies

    Develops a wide range of cybersecurity solutions, including advanced threat prevention and network security, with technologies designed to detect and block botnet infections and prevent systems from becoming 'zombies'.

  • Trend Micro

    Specializes in endpoint, network, and cloud security, offering solutions that include botnet detection and prevention capabilities to protect systems from being compromised and used as 'zombies'.

  • Mandiant (Google Cloud)

    A leader in incident response and threat intelligence, Mandiant develops tools and methodologies to investigate, analyze, and remediate sophisticated cyber attacks, including identifying and neutralizing 'zombie' systems used in botnets.

  • Symantec (Broadcom Enterprise Security)

    Provides enterprise security solutions, including endpoint protection and network security, with advanced threat detection capabilities designed to identify and block botnet infections and prevent systems from becoming 'zombies'.

  • Kaspersky Lab

    A global cybersecurity company known for its antivirus and advanced threat protection solutions, actively researches and develops technologies to combat various forms of malware, including botnets that create 'zombie' computers.

  • Cisco Talos

    Cisco's threat intelligence organization, Talos, researches and analyzes threats globally, developing signatures and rules for Cisco security products to detect and prevent botnet activity and identify compromised 'zombie' hosts.

RELATED TERMS IN THREATS & ATTACKS