ValleyRAT Backdoor Hides in Signed Adware That Users Add to Antivirus Exclusions

The threat actor known as Silver Fox has been observed distributing the ValleyRAT backdoor disguised as a signed Chinese adware application, running the malware under a trusted process to slip past users who add such software to their antivirus exclusions.

Russian cybersecurity vendor Kaspersky said the attackers built the disguise around QN Wallpaper, a genuine Chinese desktop-wallpaper tool

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Boot Naked Linux

Boot Naked Linux Source: Hacker News

Google Sues Chinese Smishing Network Accused of Using Gemini AI in Phishing

Google Sues Chinese Smishing Network Accused of Using Gemini AI in Phishing Read on The Hacker News Source: The Hacker News

Cyberpunk Comics, Manga and Graphic Novels

Cyberpunk Comics, Manga and Graphic Novels Source: Hacker News