Asia subjected to data exfiltration attacks by suspected Vietnamese hacking group

China, India, South Korea, Indonesia, Vietnam, Bangladesh, and Pakistan have been subjected to attacks by suspected Vietnamese threat operation CoralRaider, which involved the delivery of the QuasarRAT variant dubbed RotBot and the XClient information-stealing malware, since May, reports The Hacker News. Intrusions commence with the distribution of a Windows LNK file, which when opened triggers an HTML app file with a Visual Basic script that facilitates the execution of additional PowerShell scripts to conceal malicious activity and execute the RotBot malware, according to a report from Cisco Talos.

Source: SC Magazine

 


Date:

Categorie(s):