![Talos Takes artwork](https://is2-ssl.mzstatic.com/image/thumb/Podcasts123/v4/85/ac/2a/85ac2a72-0ea4-6505-f5b8-26a1354cff60/mza_16438040018354364563.jpg/100x100bb.jpg)
Update on LodaRAT and its many variants
Talos Takes
English - December 02, 2022 15:00 - 8 minutes - 6 MBTechnology security cyber news security news cyber security news cisco talos snort incident response news roundup Homepage Download Google Podcasts Overcast Castro Pocket Casts RSS feed
Previous Episode: The basics of InterPlanetary File System (IPFS) and how its being abused
Next Episode: Year in Review & Ukraine Activities
LodaRAT is an AutoIT based RAT that has been distributed for the last several years. Initially tied to the Kasablanka group its distribution has grown over the years. In this episode we'll be talking with the researcher, Chris Neal, to discuss LodaRAT, the campaigns we've been observing along with some key tidbits about how AutoIT is abused by adversaries. Including some fun with decompiling and recompling.