Keep your eyes on these

VERY IMPORTANT

Security Articles

RSS

The Pumpkin Eclipse - Chalubo Malware

released on 2024-06-04 @ 03:58:49 PM
Chalubo is a commodity remote access trojan (RAT). First identified in 2018, employed savvy tradecraft to obfuscate its activity; it removed all files from disk to run in-memory, assumed a random process name already present on the device, and encrypted all communications with the command and control (C2) server. Chalubo has payloads designed for all major SOHO/IoT kernels, pre-built functionality to perform DDoS attacks, and can execute any Lua script sent to the bot.