Malware

From Open Risk Manual

Definition

Malware is a class of Threat Action under Cyber Risk. It involves software designed with malicious intent containing features or capabilities that can potentially cause harm directly or indirectly to entities or their information systems.

Malware is any malicious software, script, or code run on a device that alters its state or function without the owner’s informed consent.

Examples

  • viruses
  • worms
  • spyware
  • keyloggers
  • backdoors, etc.

Reference

  • Adapted from ISO/IEC 27032:2012
  • VERIS