Researchers have discovered a previously unknown remote access trojan called InnfiRAT, capable of data exfiltration and digital spying.

InnfiRAT searches for users' cryptocurrency wallet information (Bitcoin and Litecoin included), and steals browser cookie data in order to obtain victims' usernames, passwords and session data. This information is then sent to a malicious command-and-control server, explain Zscaler researchers Sahil Antil and Rohit Chadurvedi in a company blog post published yesterday.

Written in .NET, the RAT also takes secret screenshots to capture any sensitive information that may be displayed on a user's screen at a given time.

Please register to continue.

Already registered? Log in.

Once you register, you'll receive:

  • News analysis

    The context and insight you need to stay abreast of the most important developments in cybersecurity. CISO and practitioner perspectives; strategy and tactics; solutions and innovation; policy and regulation.

  • Archives

    Unlimited access to nearly 20 years of SC Media industry analysis and news-you-can-use.

  • Daily Newswire

    SC Media’s essential morning briefing for cybersecurity professionals.

  • Learning Express

    One-click access to our extensive program of virtual events, with convenient calendar reminders and ability to earn CISSP credits.