MoonBounce: Why this new version of the Chinese malware a significant threat for your PC

A new version of the MoonBounce malware, first appeared in 2021, has been detected by the cybersecurity experts. It is the third case of a firmware bootkit in the wild. As compared to two previously discovered bootkits, LoJax and MosaicRegressor, MoonBounce demonstrates significant advancement with a more complicated attack flow and greater technical sophistication.

According to the researchers, the new version of the malware is hard to detect as it stays in the reserved memory of a computer that is used while booting the device.

What is MoonBounce?

Found by the Kaspersky researchers on the network of a company dealing in transportation services, MoonBounce, once activated, can access the host computer and it can also deploy new malware to further infect the machine. The researchers have attributed the attack with considerable confidence to the well-known advanced persistent threat (APT) actor APT41.

“While analyzing MoonBounce, Kaspersky researchers uncovered several malicious loaders and post-exploitation malware across several nodes of the same network. This includes ScrambleCross or Sidewalk, an in-memory implant that can communicate to a C2 server to exchange information and execute additional plugins, Mimikat_ssp, a publicly available post-exploitation tool used to dump credentials and security secrets, a formerly unknown Golang based backdoor, and Microcin, malware that is typically used by the SixLittleMonkeys threat actor,” reads an official release.

Related to Chinese-speaking hackers

Recently, it has been found that the MoonBounce malware belongs to an elite group of Chinese-speaking hackers called Winnti.

Infection through remote access

It is assumed that the infection occurs through remote access to the targeted machine. Though, the exact infection vector is yet to be known.

Read Here: The world’s fastest AI supercomputer in the making: A reason to rejoice for Facebook parent Meta.

 

Share
Published by
Team My Mobile

Recent Posts

iQOO Neo 12 Leak Suggests 2K 185Hz Display, Snapdragon 8 Elite Gen 5 and Massive 9,000mAh Battery

Highlights iQOO Neo 12 leak suggests launch in October 2026 as a performance-focused flagship alongside…

1 hour ago

Sony Launches 64MP LYTIA 610 Sensor With Industry-First RB2×2 OCL, 4K 120fps Support

Highlights Sony launches the LYTIA 610 with an approximately 64-effective megapixel resolution. Features the industry's…

2 hours ago

OnePlus Nord Buds 4 Launched in India With 52dB ANC, 6-Mic AI Calls and Up to 54 Hours Battery Life

Highlights OnePlus Nord Buds 4 launched in India at ₹3,499 with intro offer bringing price…

3 hours ago

Oppo Find X10 Ultra and Find X10 Pro Max Display Specifications Leaked

Highlights Oppo Find X10 Ultra & Pro Max tipped to feature a 6.89" 2K LTPO…

4 hours ago

iQOO Z11 Lite Could Debut in July With 6,500mAh Battery and Dimensity 6300 Chipset

Highlights iQOO Z11 Lite tipped to launch in mid-July 2026 positioned in the budget segment…

6 hours ago

Redmi K90 Ultra Launching on June 30 With Built-In Cooling Fan, 3,000 Yuan Price Segment Confirmed

Highlights Redmi K90 Ultra will officially launch in China on June 30 in Space Silver.…

18 hours ago

This website uses cookies.