A hacker group called Rare Werewolf has been covertly mining cryptocurrency across Russia and neighboring countries by infecting computers with XMRig malware, using sophisticated techniques to avoid detection. This campaign, active since at least 2019, involves phishing attacks and stealthy shutdown methods to maximize mining efficiency and evade detection. #RareWerewolf #XMRig…
Search Results for: RareWerewolf

Rare Werewolf, an APT group, has targeted Russia and CIS countries using legitimate software and phishing tactics to deploy cryptojackers and facilitate remote access. The groupβs activities include using PowerShell scripts, remote desktop tools, and decoy documents, complicating detection efforts. #RareWerewolf #APT #Cryptojacking…

Librarian Ghouls, an APT group targeting Russian and CIS entities, employs legitimate third-party software and scripting rather than custom malware for its attacks, focusing on credential theft and deploying a crypto miner. Their ongoing campaign features phishing emails, remote access tools, and complex infection stages, with hundreds of victims primarily in Russia and neighboring countries. #LibrarianGhouls #RareWerewolf #Rezet #XMRig #AnyDesk