New Snake Keylogger Variant Leverages AutoIt Scripting to Evade Detection

New Snake Keylogger Variant Leverages AutoIt Scripting to Evade Detection
Summary: A new variant of the Snake Keylogger malware is actively targeting Windows users in several countries and has been associated with over 280 million blocked infection attempts this year. This malware employs advanced techniques like AutoIt scripting to bypass detection, captures sensitive information, and maintains persistence on infected systems. Additionally, a separate campaign is exploiting compromised educational infrastructure to distribute malware disguised as PDF files to steal sensitive data.

Affected: Windows Users in China, Turkey, Indonesia, Taiwan, Spain; Educational Institutions

Keypoints :

  • Snake Keylogger targets web browsers, stealing keystrokes and credentials through phishing emails.
  • It employs AutoIt scripting to evade detection and executes a persistence mechanism for prolonged access.
  • A separate campaign utilizes malicious LNK files disguised as PDF documents to distribute Lumma Stealer malware.
  • Recent malware distribution methods involve obfuscated JavaScript files to exfiltrate sensitive data to Telegram bots.

Source: https://thehackernews.com/2025/02/new-snake-keylogger-variant-leverages.html

Views: 7