Cybercriminals Exploit CrowdStrike Update Mishap to Distribute Remcos RAT Malware

The cybersecurity company CrowdStrike has issued a warning that threat actors are taking advantage of the situation to spread Remcos RAT to its clients in Latin America under the pretense of offering a hotfix. CrowdStrike is currently under fire for causing widespread IT disruptions by pushing out a faulty update to Windows devices.

The attack chains entail the distribution of a ZIP archive file called “crowdstrike-hotfix.zip,” which is the payload for the Remcos RAT malware loader Hijack Loader (also known as DOILoader or IDAT Loader).

To be more precise, the archive file also contains a text file called “instrucciones.txt” that contains instructions in Spanish urging users to run an executable file called “setup.exe” to fix the problem read more about Cybercriminals Exploit CrowdStrike Update Mishap to Distribute Remcos RAT Malware.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *