Vidar distributed through backdoored Windows 11 downloads and abusing Telegram
Security Boulevard
MAY 19, 2022
In April 2022, ThreatLabz discovered several newly registered domains, which were created by a threat actor to spoof the official Microsoft Windows 11 OS download portal. These variants of Vidar malware fetch the C2 configuration from attacker-controlled social media channels hosted on Telegram and Mastodon network. Key points.
Let's personalize your content