New Linux variant of BIFROSE RAT uses deceptive domain strategies
Security Affairs
MARCH 3, 2024
The Bifrost RAT has been active since 2004, it allows its operators to gather sensitive information, including hostname and IP address. The recent sample of Linux variants of BIFROSE employes RC4 encryption to encrypt the collected victim data. com) that mimics the legitimate VMware domain.
Let's personalize your content