A new variant of VileRAT is infecting Windows systems through fake software pirate websites #cybersecurity #malware
The Python-based VileRAT malware is specific to the Evilnum threat group, DeathStalker #cybersecurity
It is distributed by the VileLoader loader, allowing attackers to record keystrokes and run commands remotely #cybersecurity
Evilnum is a hacker-for-hire service targeting governments, financial institutions, and cryptocurrency organizations #cybersecurity
New variants of VileRAT are being spread through modified installers and utilize a malicious Nulloy media player installer #cybersecurity
The VileLoader is stored within a modified version of a legitimate NVIDIA 3D Vision Test Application #cybersecurity
Between 1,000 and 10,000 devices are estimated to be infected with this VileRAT strain #cybersecurity
Evilnum's use of software piracy marks a departure from their previous tactics #cybersecurity #malware
https://cybersecuritynews.com/vilerat-attacking-windows-machines/