Blog | G5 Cyber Security

MosaicRegressor: Second-ever UEFI rootkit found in the wild

The MosaicRegressor UEFI bootkit is a modular and multi-stage malware framework used by Chinese-speaking hackers in data theft and espionage operations. It’s a custom version of Hacking Team’s VectorEDK bootkit, leaked in 2015, which allowed developers to spend less time creating it and to greatly narrow their risk of exposure. Kaspersky researchers Mark Lechtik and Igor Kuznetsov discovered it during investigations surrounding attacks from 2019 against two non-governmental organizations (NGOs)

Source: https://www.bleepingcomputer.com/news/security/mosaicregressor-second-ever-uefi-rootkit-found-in-the-wild/

Exit mobile version