Friday 10th March 2023

CTI Weekly: HiatusRAT malware is targeting business-grade routers to collect intelligence

The Hiatus campaign is using a new malware called HiatusRAT to target business-grade routers that support VPN connections for remote workers. The RAT steals data from victims and builds a covert proxy network, capturing network traffic including email content, credentials, and file content. At least one hundred businesses across Europe, North America, and South America have been infected since July 2022.

 

Subscribe below to read why Orpheus’ analysts expect that threat actors experiencing success with this method will continue to exploit remote working conditions for intelligence collection operations.

Get our latest cyber intelligence insights straight into your inbox

Fill out the short form below to subscribe to our newsletter so that you never miss out on our cyber intelligence insights and news.