LabubaRAT Masquerades as NVIDIA Software to Control Windows Hosts
A previously unreported Rust-based remote access trojan (RAT) known as LabubaRAT has been discovered by cybersecurity experts. It poses as NVIDIA software in order to blend in with target surroundings.
In an investigation released today, Blackpoint Cyber experts Sam Decker and Nevan Beal stated that LabubaRAT provides a reusable footing for hands-on operations. After deployment, it can move files, take screenshots, profile the host, recognize security tools, receive operator orders, and proxy traffic through the compromised machine.
Additionally, the implant supports a variety of communication protocols, including as HTTPS, WebView2, and DNS tunneling, which enables attackers to continue accessing infected hosts even in the event that one avenue is identified and blocked. There are ...

