Iranian Hackers Pose as Recruiters to Deliver CrossPlatform RATs Through Coding Tests
News Source : Internet
News Summary
- The Iranian Nimbus Manticore hacking group has been attributed to two previously undocumented malware families.
- Russian cybersecurity company Kaspersky is tracking the malware strains under the names NodeRabbit and PollCat.
- The first sample of nodeRabbit was discovered on a system in Afghanistan, with subsequent sightings on two distinct machines located in Egypt and Ethiopia.
- Like NodeR Rabbit, PollCat is a cross-platform RAT, but it is written in obfuscated JavaScript also distributed through trojanized coding challenge archives.
Never miss a story from us, subscribe to our newsletter