New Malware Builder Makes Hacking Easier

  /     /     /  
Publicated : 22/11/2024   Category : security


New Malware Builder Makes Hacking Easier


A free new builder for trojans makes it easier than ever to be a criminal hacker.



Its never been easier to be a hacker. Thats the latest takeaway from a
blog post by Zscalar
in which they detail a free program for building dangerous malware.
The particular malware being offered, known as Cobian RAT (remote access trojan), has been in the wild since the beginning of 2017. RAT builders are frequently offered for sale on criminal hacker web sites, but this version is notable because its free.
Of course, there is a price to be paid, and in this case the price is a backdoor that allows the newly built malware to be controlled by the original malwares author -- something that isnt made clear in the documentation and is hidden when the malware is executed in most testing environments.
In some critical ways this is the criminal malware version of multi-level marketing, in which the original malwares author is depending on down-stream builders to spread the malware far and wide, after which it can be activated and controlled by the originator.
According to the Xscaler researchers, the code used in the Cobian RAT is similar to that used in earlier
NjRAT and H-Worm variants
first seen more than four years ago. The original malware was common in the Middle East and that seems to be the center of Cobian RAT activity as well.
Youre invited to attend Light Readings
Virtualizing the Cable Architecture event
– a free breakfast panel at SCTE/ISBEs Cable-Tec Expo on October 18 featuring Comcasts Rob Howald and Charters John Dickinson.
What sort of activity does the Cobian RAT initiate? Among the features of software are keylogger, screen capture, webcam, voice recorder and file browser functions, along with the ability to install and uninstall applications and dynamic plugins. An infected user could literally have every action they take on the computer (or in the same room as the computer) captured and downloaded to the controlling server.
The widespread nature of the original malware and the multi-level marketing aspect of the new variant together create the potential for a massive botnet that could be used to generate spam or record-breaking DDoS attacks. As always, individuals and companies should be vigilant for .ZIP and other packed files sent from suspicious addresses or in uncommon circumstances from known -- and possibly spoofed -- contacts.
Related posts:
Millions of Email Addresses Exposed in Latest Malware Database
DDoS Trends Show Big Impact From Fewer Servers
Unpacking Packed Malware
— Curtis Franklin is the editor of
SecurityNow.com
. Follow him on Twitter
@kg4gwa
.

Last News

▸ ArcSight prepares for future at user conference post HP acquisition. ◂
Discovered: 07/01/2025
Category: security

▸ Samsung Epic 4G: First To Use Media Hub ◂
Discovered: 07/01/2025
Category: security

▸ Many third-party software fails security tests ◂
Discovered: 07/01/2025
Category: security


Cyber Security Categories
Google Dorks Database
Exploits Vulnerability
Exploit Shellcodes

CVE List
Tools/Apps
News/Aarticles

Phishing Database
Deepfake Detection
Trends/Statistics & Live Infos



Tags:
New Malware Builder Makes Hacking Easier