Vietnam-Based Hackers Steal Financial Data Across Asia with Malware

Since at least May 2023, a suspected threat actor of Vietnamese ancestry has been seen using malware to target individuals in several Asian and Southeast Asian nations in an attempt to obtain sensitive data.

The cluster, known as CoralRaider, is being monitored by Cisco Talos, which characterizes it as financially driven. India, China, South Korea, Bangladesh, Pakistan, Indonesia, and Vietnam are among the countries the campaign is aimed at.

According to security researchers Chetan Raghuprasad and Joey Chen, this organization specializes in acquiring victims’ login credentials, bank information, and social network profiles, including corporate and commercial accounts. They employ XClient stealer and RotBot, a modified version of Quasar RAT, as payloads.

The organization also uses a combination of information stealers and remote access trojans read more Vietnam-Based Hackers Steal Financial Data Across Asia with Malware.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *