Stealthy AsyncRAT malware attacks targets US infrastructure for 11 months
ID: bcd7d5be-5a87-5e84-a5e7-4c389e7206f1
STIX ID: report--bcd7d5be-5a87-5e84-a5e7-4c389e7206f1
Feed Name: Bleeping Computer
Threat Score
A targeted phishing campaign has been active for at least 11 months delivering AsyncRAT via obfuscated loader chains (GIF→SVG→JS/PowerShell); the loader performs anti-sandbox checks, uses a Sunday-based DGA for C2, and has employed ~300 unique samples and decoys to evade analysis. AT&T Alien Labs published IoCs and detection signatures but did not attribute the actor.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
