Site icon TheCyberThrone

SolarMarket RAT

Advertisements

The eSentire Threat Response Unit (TRU) has identified that attackers are using new techniques to lure business professionals to hacker-controlled websites hosted on Google Sites. Moreover, the cybersecurity solutions provider has identified various additional incidents, as well, in the past week.

Strategy

The attackers are using search engine optimization tactics to lure business users to more than 100,000 malicious Google sites.

SolarMarket RAT 

The TRU team analyzed SolarMarket RAT, which is written in the Microsoft .NET framework. It uses multiple decoy applications that are downloaded to the victim’s computer.

Conclusion

The recent attacks indicate that cybercriminals are getting smarter and adding more layers of sophistication to their campaigns. By using a RAT, attackers can harvest employee email credentials and launch a BEC scheme. Therefore, staying alert is key to prevent being compromised by such attacks.

Exit mobile version