North Korean state-sponsored hacker group Lazarus adds new RAT to its malware toolset

North Korean state-sponsored hacker group Lazarus adds new RAT to its malware toolset

Security researchers have discovered a new remote access Trojan (RAT) being used in attack campaigns this year by Lazarus, a threat actor tied to the North Korean government. The new RAT has been used alongside other malware implants attributed to Lazarus and it's mainly used in the first stages of an attack.

Dubbed MagicRAT, the new Lazarus malware program was developed using Qt, a framework commonly used to develop graphical user interfaces for cross-platform applications. Since the Trojan doesn't have a GUI, researchers from Cisco Talos believe the reason for using Qt was to make detection harder.

To read this article in full, please click here



Support the originator by clicking the read the rest link below.