Blog | G5 Cyber Security

Cardinal RAT Resurrected to Target FinTech Firms

Malware family called Cardinal RAT has reappeared, after two years of silence. Malware is capable of stealing username and credentials, cleaning out cookies from browsers, keylogging and capturing screenshots on targeted systems. The malware is delivered via a downloader dubbed Carp which uses malicious macros in Microsoft Excel documents to compile embedded source code into an executable, which then deploys the malware family. The latest version of the malware (version 1.7.2) is similar, but it also now employs various obfuscation techniques to hinder analysis.”]

Source: https://threatpost.com/cardinal-rat-fintech/142965/

Exit mobile version