ZuoRAT Malware Targets SOHO Routers To Infiltrate Networks

Share post:

Researchers from Lumen’s Black Lotus Labs threat intelligence unit have discovered a remote access trojan (RAT) called ZuoRAT. The malware targets remote employees by exploiting vulnerabilities in unpatched small office/home office (SOHO) routers.

The researchers estimate that at least 80 targets were affected by the campaign.

Lumen believes that the capabilities of the malware suggest that it was the work of a highly sophisticated actor.

These capabilities include “gaining access to SOHO devices of different makes and models, collecting host and LAN information to inform targeting, sampling and hijacking network communications to gain potentially persistent access to in-land devices, and intentionally stealth C2 infrastructure leveraging multistage siloed router to router communications.”

Lumen admits, however, that it has limited insight into the broader capabilities of the actor, but Lumen’s researchers are “confident” that the elements it is tracking are part of a broader campaign.

SOHO router manufacturers compromised include ASUS, Cisco, DrayTek, and Netgear.

The sources for this piece include an article in ZDNet.

SUBSCRIBE NOW

Related articles

Tech News Roundup: Google’s Free AI Rollout, Data Privacy Tips for Travelers, CloudFlare’s New SSH Tool, and Social Security System Overhaul

In this episode of Trending, host Jim Love covers several key tech developments. Google has made its latest...

Cybersecurity Today: Hacking Arrests, Solar Vulnerabilities, Phishing Awareness, and Tragic Fraud Consequences

In this episode of Cybersecurity Today, hosted by David Shipley, several critical topics are covered. A Canadian hacker...

Cloudflare Launches Open Source Tool for Secure, Keyless SSH Authentication

Cloudflare has released an open-source tool called OPKSSH (OpenPubkey SSH), which allows developers and IT teams to use...

The Rise of Robots: AI, Humanoid Helpers, and the Future of Work: Project Synapse on Hashtag Trending

In this episode of Project Synapse, John Pinard, Marcel Gagne, and Jim discuss the latest advancements and implications...

Become a member

New, Relevant Tech Stories. Our article selection is done by industry professionals. Our writers summarize them to give you the key takeaways