New Chaos Variant Targets Misconfigured Cloud Deployments Adds SOCKS Proxy
A new malware strain known as Chaosthat, which is capable of attacking improperly configured cloud deployments, has been identified by cybersecurity researchers, indicating an extension of the botnet's targeting architecture.
According to a recent analysis by Darktrace, chaos malware is increasingly focusing on improperly configured cloud deployments rather than only routers and edge devices.
In September 2022, Lumen Black Lotus Labs published the first report on Chaos, characterizing it as a cross-platform malware that can run remote shell commands, drop additional modules, mine cryptocurrency, propagate to other hosts by brute-forcing SSH keys, and launch distributed denial-of-service (DDoS) attacks via HTTP, TLS, TCP, UDP, and WebSocket.
The malware is thought to be a developm...

