A new malware named ResolverRAT is reportedly targeting the healthcare and pharmaceutical sectors through sophisticated phishing and stealth attacks. This multi-stage Remote Access Trojan (RAT) employs localized lures in languages such as Hindi, Italian, and Turkish, and features advanced evasion techniques including encryption, IP rotation, and memory-only payloads. The campaign is part of a broader trend of precision-targeted phishing attacks that validate victim emails in real-time before attempting to steal credentials. Only verified high-value accounts are presented with fake login screens, while unverified users are redirected to Wikipedia to evade detection. Additionally, a Chinese-backed threat actor known as UNC5174 has been identified using open-source tools like VShell in stealthy attacks against Linux systems, further highlighting the evolving landscape of cyber threats.
Chinese Hackers Target Linux Systems Using SNOWLIGHT Malware and VShell Tool https://t.co/L6eSNnSrNc
China-Backed Threat Actor 'UNC5174' Using Open Source Tools in Stealthy Attacks https://t.co/Itri2WxNSO
Chinese Hackers Target Linux Systems Using SNOWLIGHT Malware and VShell Tool: https://t.co/rcBOHxhyLl by The Hacker News #infosec #cybersecurity #technology #news