Close Menu
  • Tech Insights
  • Laptops
  • Mobiles
  • Gaming
  • Apps
  • Money
  • Latest in Tech
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
TechzLab – Tech News, Gadgets, Mobile & IT UpdatesTechzLab – Tech News, Gadgets, Mobile & IT Updates
  • Tech Insights
  • Laptops
  • Mobiles
  • Gaming
  • Apps
  • Money
  • Latest in Tech
TechzLab – Tech News, Gadgets, Mobile & IT UpdatesTechzLab – Tech News, Gadgets, Mobile & IT Updates
Home » Javascript files loaded with RATs hits thousands of victims
Tech Insights

Javascript files loaded with RATs hits thousands of victims

adminBy adminDecember 3, 2024No Comments2 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest Email


  • Kaspersky found a new campaign, using malicious JavaScript to deploy RATs
  • The RATs are used to deploy two infostealers
  • Among the victims are people and businesses in Russia

Hackers are targeting people and businesses in Russia with malicious JavaScript, in order to install backdoors on their devices. This is according to a new report from cybersecurity researchers Kaspersky, who named the campaign “Horns&Hooves”.

As per the researchers, Horns&Hooves started in March last year, and has since infected roughly 1,000 endpoints.

The campaign starts with a phishing email, in which the attackers impersonate individuals and businesses, and send emails that mimic requests and bids from potential customers, or partners.

Actively developed campaign

The emails come with various attachments, among which is the JavaScript payload. This payload delivers two Remote Access Trojans (RAT): NetSupport RAT and BurnsRAT. In turn, these RATs are used to deploy the final payload: either Rhadamanthys, or Meduza.

These two are known infostealers. Since late 2022, Rhadamanthys is being offered on the dark web as a service, enabling crooks to steal a vast range of information from the target device, from system details, passwords, to browsing data. Rhadamanthys has specialized tools for stealing cryptocurrency credentials, with support for over 30 different wallets.

Meduza, on the other hand, is part of the growing threat landscape for personal and business cybersecurity. Like Rhadamanthys, it steals user credentials and other sensitive information, including login credentials for various services and applications. However, Meduza operates with a more focused scope, aiming to evade detection through various obfuscation and anti-analysis techniques​.

Horns&Hooves is an actively developed campaign, the researchers are saying, stressing that the code was revamped and upgraded numerous times. While attribution proved difficult, there is reason to believe that TA569 is behind the attacks. This group, according to The Hacker News, is also called Mustard Tempest, or Gold Prelude) and is the one running the SocGholish malware.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

The same publication also stated that TA569 was seen acting as an initial access broker for affiliates deploying the WastedLocker ransomware strain.

Via The Hacker News

You might also like

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
admin
  • Website

Related Posts

Claude’s latest model is cheaper and faster than Sonnet 4 – and free

October 15, 2025

3 Best Smart Displays (2025): Tested By a Smart Home Addict

October 13, 2025

3 stunning Dolby Atmos movies to treat your home theater with this Halloween, and they sound best on 4K Blu-ray

October 12, 2025

Comments are closed.

Latest
  • Apple adds 650 megawatts of renewables in Europe with more coming in China | TechCrunch October 15, 2025
  • The Invincibles Meets the Office in New Trailer for Dispatch | IGN Fall Fan Fest 2025 October 15, 2025
  • Galaxy S23 FE users are in for a major upgrade as One UI 8 reaches them October 15, 2025
  • Apple just upgraded the Vision Pro with the M5 chip, and a ‘Dual Knit Band’ that looks way more comfortable October 15, 2025
  • Best gaming laptops starting at ₹56990 from HP, Dell, Lenovo, ASUS, Acer in Amazon Diwali Sale 2025, top deals covered October 15, 2025
We are social
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo

Subscribe to Updates

Get the latest creative news from Techzlab.

Tags
AI ai coding AI research Anthropic Apple artificial intelligence ChatGPT cybersecurity data centers defense tech doge Donald Trump electric vehicles Elon Musk evergreens EVs Exclusive Google Grok In Brief iPhone Meta Microsoft Openai Perplexity Pinterest renewable power robotics Scales to siri slate auto social media Solar Power SpaceX Spotify stargate TechCrunch All Stage TechCrunch All Stage 2025 TechCrunch Disrupt TechCrunch Disrupt 2025 Tesla Tiktok Trump Administration Y Combinator YouTube
Archives
Quick Link
  • Apps (309)
  • From the Editor (4)
  • Gaming (322)
  • Laptops (326)
  • Latest in Tech (320)
  • Mobiles (327)
  • Money (151)
  • Tech Insights (316)
Don't miss

Claude’s latest model is cheaper and faster than Sonnet 4 – and free

October 15, 2025

3 Best Smart Displays (2025): Tested By a Smart Home Addict

October 13, 2025

3 stunning Dolby Atmos movies to treat your home theater with this Halloween, and they sound best on 4K Blu-ray

October 12, 2025
Follow us
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
© 2025 Techzlab.com Designed and Developed by WebExpert.
  • Home
  • From the Editor
  • Money
  • Privacy Policy
  • Contact

Type above and press Enter to search. Press Esc to cancel.