STX RAT Targets Finance Sector With Advanced Stealth Tactics
ID: f3ec506e-c57b-515a-aa41-3f667de8b0c4
STIX ID: report--f3ec506e-c57b-515a-aa41-3f667de8b0c4
Feed Name: Infosecurity Magazine (News)
Threat Score
A newly identified remote access trojan, STX RAT, was observed in an attempted attack on a financial services environment; it uses multi-stage script-based delivery, in-memory execution (PowerShell and reflective loading), XXTEA/Zlib unpacking, registry and COM persistence, encrypted C2 traffic, and delayed credential-stealing to evade detection.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
