cognitive cybersecurity intelligence

News and Analysis

Search

New version of MysterySnail RAT and lightweight MysteryMonoSnail backdoor

New version of MysterySnail RAT and lightweight MysteryMonoSnail backdoor

The Chinese-speaking cyber espionage group, IronHusky, has ramped up its activities against Mongolian and Russian governmental agencies. By exploiting a vulnerability dubbed MysterySnail RAT, uncovered during a 2021 investigation into a zero-day flaw, IronHusky uses tactics like DLL Sideloading and complex command and control communications. The threat actors then execute a variety of commands such as retrieving a second-stage malicious payload and luring DOCX files from public file storage.

Source: securelist.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts