MoonBounce: Why this new version of the Chinese malware a significant threat for your PC

A new version of the MoonBounce malware, first appeared in 2021, has been detected by the cybersecurity experts. It is the third case of a firmware bootkit in the wild. As compared to two previously discovered bootkits, LoJax and MosaicRegressor, MoonBounce demonstrates significant advancement with a more complicated attack flow and greater technical sophistication.

According to the researchers, the new version of the malware is hard to detect as it stays in the reserved memory of a computer that is used while booting the device.

What is MoonBounce?

Found by the Kaspersky researchers on the network of a company dealing in transportation services, MoonBounce, once activated, can access the host computer and it can also deploy new malware to further infect the machine. The researchers have attributed the attack with considerable confidence to the well-known advanced persistent threat (APT) actor APT41.

“While analyzing MoonBounce, Kaspersky researchers uncovered several malicious loaders and post-exploitation malware across several nodes of the same network. This includes ScrambleCross or Sidewalk, an in-memory implant that can communicate to a C2 server to exchange information and execute additional plugins, Mimikat_ssp, a publicly available post-exploitation tool used to dump credentials and security secrets, a formerly unknown Golang based backdoor, and Microcin, malware that is typically used by the SixLittleMonkeys threat actor,” reads an official release.

Related to Chinese-speaking hackers

Recently, it has been found that the MoonBounce malware belongs to an elite group of Chinese-speaking hackers called Winnti.

Infection through remote access

It is assumed that the infection occurs through remote access to the targeted machine. Though, the exact infection vector is yet to be known.

Read Here: The world’s fastest AI supercomputer in the making: A reason to rejoice for Facebook parent Meta.

 

Share
Published by
Team My Mobile

Recent Posts

iQOO Neo 11 Pro, Neo 11 Pro+ Leak Suggests 2K Display, 8,000mAh Battery and Flagship-Level Performance

Highlights Leaks suggest iQOO is testing two new devices likely called iQOO Neo 11 Pro…

9 hours ago

Vivo X300s Launch on March 30, 200MP Camera, 7,100mAh Battery and 144Hz Display Tipped Ahead of Debut

Highlights Vivo X300s will debut in China on March 30, alongside the X300 Ultra and…

9 hours ago

Primebook Launches PrimeAGNT AI to Execute Tasks Automatically on PrimeOS

Highlights Primebook introduces PrimeAGNT, an AI built into PrimeOS that executes complete tasks automatically based…

13 hours ago

Vivo Y21 5G and Vivo Y11 5G Launched in India with 6,500mAh Batteries, Dimensity 6300 Chipset

Highlights Vivo Y21 5G price starts at ₹18,999, while Vivo Y11 5G starts at ₹14,999.…

14 hours ago

Realme P4 Lite 5G First Sale Begins in India – Price Drops to ₹11,499 with Introductory Offers

Highlights Realme P4 Lite 5G first sale discounts and bank offers bring the effective price…

15 hours ago

Vivo V70 FE Specs Leak Ahead of India Launch – 200MP Camera, 7,000mAh Battery Tipped

Highlights Vivo V70 FE leak reveals a 6.83-inch 1.5K AMOLED display, MediaTek 7360 Turbo chipset,…

16 hours ago

This website uses cookies.