Security News

New Cross-Platform Malware 'Noodle RAT' Targets Windows and Linux Systems
2024-06-13 06:25

A previously undocumented cross-platform malware codenamed Noodle RAT has been put to use by Chinese-speaking threat actors either for espionage or cybercrime for years. While this backdoor was...

Researchers Uncover RAT-Dropping npm Package Targeting Gulp Users
2024-06-03 14:00

Cybersecurity researchers have uncovered a new suspicious package uploaded to the npm package registry that's designed to drop a remote access trojan (RAT) on compromised systems. The package in...

Andariel Hackers Target South Korean Institutes with New Dora RAT Malware
2024-06-03 07:34

The North Korea-linked threat actor known as Andariel has been observed using a new Golang-based backdoor called Dora RAT in its attacks targeting educational institutes, manufacturing firms, and...

Brazilian Banks Targeted by New AllaKore RAT Variant Called AllaSenha
2024-05-29 14:58

Brazilian banking institutions are the target of a new campaign that distributes a custom variant of the Windows-based AllaKore remote access trojan (RAT) called AllaSenha. The malware is...

China-Linked Hackers Adopt Two-Stage Infection Tactic to Deploy Deuterbear RAT
2024-05-17 11:20

Interestingly, the RAT module is fetched twice from the attacker-controlled infrastructure, the first of which is just used to load the Waterbear plugin that subsequently launches a different version of the Waterbear downloader to retrieve the RAT module from another C&C server. Put differently, the first Waterbear RAT serves as a downloader while the second Waterbear RAT functions as a backdoor, harvesting sensitive information from the compromised host through a set of 60 commands.

FIN7 Hacker Group Leverages Malicious Google Ads to Deliver NetSupport RAT
2024-05-11 07:29

The financially motivated threat actor known as FIN7 has been observed leveraging malicious Google ads spoofing legitimate brands as a means to deliver MSIX installers that culminate in the...

North Korea's Lazarus Group Deploys New Kaolin RAT via Fake Job Lures
2024-04-25 16:47

The North Korea-linked threat actor known as Lazarus Group employed its time-tested fabricated job lures to deliver a new remote access trojan called Kaolin RAT. The malware could, "aside from...

Hive RAT Creators and $3.5M Cryptojacking Mastermind Arrested in Global Crackdown
2024-04-16 07:33

Two individuals have been arrested in Australia and the U.S. in connection with an alleged scheme to develop and distribute a remote access trojan called Hive RAT (previously Firebird). The U.S....

Firebird RAT creator and seller arrested in the U.S. and Australia
2024-04-13 14:17

A joint police operation between the Australian Federal Police and the FBI has led to the arrest and charging of two individuals who are believed to be behind the development and distribution of the "Firebird" remote access trojan, later rebranded as "Hive.". The Australian Federal Police alleges that the Australian developed and sold the RAT on a dedicated hacking forum, enabling other users who paid for the tool to remotely access victims' computers and perform unauthorized activity.

Massive Phishing Campaign Strikes Latin America: Venom RAT Targeting Multiple Sectors
2024-04-02 04:54

The threat actor known as TA558 has been attributed to a new massive phishing campaign that targets a wide range of sectors in Latin America with the goal of deploying Venom RAT. The attacks...