Cybercriminals Clone Antivirus Site to Spread Venom RAT and Steal Crypto Wallets
Researchers studying cybersecurity have revealed a new harmful operation that tricked users into installing the Venom RAT remote access trojan by using a phony website that promoted Bitdefender antivirus software.
The DomainTools Intelligence (DTI) team said in a new study released with The Hacker News that the effort shows a clear goal to target individuals for financial benefit by compromising their credentials, crypto wallets, and maybe selling access to their systems.
The aforementioned website, "bitdefender-download[.]com," encourages users to download an antivirus program for Windows. A file download from a Bitbucket repository that reroutes to an Amazon S3 bucket is started when the conspicuous "Download for Windows" button is clicked. The account on Bitbucket has been deacti...

