New Linux variant of BIFROSE RAT uses deceptive domain strategies
Security Affairs
MARCH 3, 2024
The Bifrost RAT has been active since 2004, it allows its operators to gather sensitive information, including hostname and IP address. The researchers observed the malware trying to contact a Taiwan-based public DNS resolver with the IP address 168.95.1[.]1. com by using the public DNS resolver at 168.95[.]1.1.
Let's personalize your content