New Raspberry Robin worm uses Windows Installer to drop malware

LASER_oneXM

Level 37
Thread author
Verified
Top Poster
Well-known
Forum Veteran
Feb 4, 2016
2,516
15,625
3,578
53
Germany / Poland
Red Canary intelligence analysts have discovered a new Windows malware with worm capabilities that spreads using external USB drives.

This malware is linked to a cluster of malicious activity dubbed Raspberry Robin and was first observed in September 2021.

Red Canary's Detection Engineering team detected the worm in multiple customers' networks, some in the technology and manufacturing sectors.

Raspberry Robin spreads to new Windows systems when an infected USB drive containing a malicious .LNK file is connected.
 

You may also like...