Summary
Attackers compromised the iTorrents repository to distribute multi-stage Windows malware disguised as popular films. The campaign gives attackers remote access to infected systems, supports file manipulation, and uses the Solana blockchain to retrieve command-and-control infrastructure.
Take Action:
Remember, there is no such thing as free lunch. Download files from trusted sources, and be cautious of files that use movie names or icons but are actually Windows executables. Organizations should block torrent use on work devices where possible and investigate any systems that downloaded or opened suspicious files from affected torrent sources.
Read the full article on BeyondMachines
This article was originally published on BeyondMachines
Top comments (0)