HiatusRAT is a type of malware known as a Remote Access Trojan (RAT). Cybercriminals employ remote access Trojans to take over and control a target device from a distanceHiatusRAT malware appears to have been in use since July 2022 in its most current iteration1. This particular malware campaign, referred to as the Hiatus campaign, targets business-grade routers, specifically DrayTek Vigor router models 2960 and 3900. These routers are often used by small and medium-sized companies and can support VPN connections for hundreds of remote workers. The hackers behind the Hiatus campaign aim to steal data and transform the infected devices into a covert proxy network23. If you suspect any router compromise, it’s essential to take security measures promptly to protect your network. 🛡️🔒
Learn more
1sisainfosec.com2blog.lumen.com3heimdalsecurity.com4opusfidelis.com
S
ShibumiOP