Реклама партнера — Название партнёра
UNIT.City — місце, де люди працюють... КРАЩЕ! Обирай свій простір просто зараз 👉

Unknown "Cyber ​​Robin Hood" has cracked the Sakura RAT hacking software - instead of victims, it infects hackers and cheaters who try to compile it

Cybersecurity researchers from Sophos have uncovered a major hacking operation targeting other hackers and users of video game cheats.

Leave a comment
Unknown "Cyber ​​Robin Hood" has cracked the Sakura RAT hacking software - instead of victims, it infects hackers and cheaters who try to compile it

Cybersecurity researchers from Sophos have uncovered a major hacking operation targeting other hackers and users of video game cheats.

Sophos has found that the Sakura RAT malware found on GitHub does indeed harm, but not ordinary users, but those who compile and distribute it, TechRadar reports.

«In other words, Sakura RAT has been hacked,» the researchers note.

Most of the RAT code was copied from the popular AsyncRAT, and many of the forms inside were left blank, meaning it didn’t even work properly on the target device. But researchers found it had a lot of «convoluted infection chains, identifiers, and multiple backdoor variants».

According to them, the hacker or hacker group behind the RAT (who goes by the nickname ischhfd83) actually created over a hundred variants of the malware, targeting beginners and people looking for cheats in games.

Sophos found 141 repositories from the same threat actors, 133 of which were infected in various ways. 111 contained Sakura. The majority (58%) of these were advertised as game cheats, 24% as malicious projects, 7% as bots, 5% as crypto tools, and 6% as other miscellaneous tools.

Researchers note that the campaign began in 2024 and was aimed at novices, as experienced hackers would launch such projects in a sandbox environment. Sophos believes it was quite successful.

Recall that last fall, the gaming company Activision announced that it had fixed a bug in its Ricochet anti-cheat system that had mistakenly blocked «a small number of legitimate player accounts.» According to a hacker with the nickname Vizor, the actual number of victims was not a bug, but an exploit that he found and used.

Read the country's main IT news in our Telegram
Read the country’s main IT news in our Telegram
On the topic
Read the country’s main IT news in our Telegram
An enterprising hacker from Zaporizhia region mined $45 million worth of crypto on other people's servers. He began developing his "scheme" back in 2018.
An enterprising hacker from Zaporizhia region mined $4.5 million worth of crypto on other people’s servers. He began developing his «scheme» back in 2018.
On the topic
An enterprising hacker from Zaporizhia region mined $4.5 million worth of crypto on other people’s servers. He began developing his «scheme» back in 2018.
Activision sues domain and $14 million from Call of Duty cheat developer
Activision sues domain and $14 million from Call of Duty cheat developer
On the topic
Activision sues domain and $14 million from Call of Duty cheat developer
Hacker claims Activision banned "thousands and thousands" of honest Call of Duty players due to anti-cheat exploit he used for fun
Hacker claims Activision banned «thousands and thousands» of honest Call of Duty players due to an anti-cheat exploit he used for fun
On the topic
Hacker claims Activision banned «thousands and thousands» of honest Call of Duty players due to an anti-cheat exploit he used for fun

Have important news to share? Message our Telegram bot

Key events and useful links in our Telegram channel

Discussion
No comments yet.