This Borat-themed malware is not funny in the slightest

watch borat 2 online
(Image credit: Amazon)

Cybersecurity researchers have discovered a potent new malware strain that comes with a number of dangerous features and abilities. 

Named Borat (after the protagonist of the popular Sacha Baron Cohen film), the malware is a remote access trojan (RAT), ransomware tool and spyware all in one, which can also be used to launch distributed denial of service (DDoS) attacks and UAC bypass.

Researchers from the cybersecurity firm Cyble managed to obtain a sample of the malware and, after a closer inspection, discovered that it can take control of the target’s mouse and keyboard, access files and network points, and hide its presence on the endpoint.

TechRadar needs you!

We're looking at how our readers use VPNs with different devices so we can improve our content and offer better advice. This survey shouldn't take more than 60 seconds of your time. Thank you for taking part.

>> Click here to start the survey in a new window <<

Triple trouble

Among the Borat malware's vast array of features are a keylogger, audio recorder, webcam recorder, reverse proxy, password stealer and Discord token stealer.

Researchers aren’t sure if Borat is being sold online, or just distributed for free. Cyble says it comes bundled up with a builder, different malware modules, and a server certificate. 

Usually, such malware gets distributed on dark web sites, in torrent files masquerading as patches and cracks, and on fake phishing sites that promise free software and other things.

The researchers described it as a “unique combination of RAT, spyware and ransomware”, making it a “triple threat” to any compromised device.

“With the capability to record audio and control the webcam and conduct traditional info-stealing behavior, Borat is clearly a threat to keep an eye on,” the researchers concluded.

BleepingComputer tried to uncover who the masterminds behind Borat are, and found that the payload executable was recently identified as AsyncRAT, which suggests the authors probably based their work on this particular RAT.

To stay safe, security researchers suggest everyone stays vigilant when downloading software and only downloads content from trusted sources.

Via BleepingComputer

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
Trojan
Microsoft warns of a devious new RAT malware which can avoid detection with apparent ease
A digital representation of a lock
Security experts are being targeted with fake malware discoveries
Illustration of a laptop with a magnifying glass exposing a beetle on-screen
This devious macOS malware is evading capture by using Apple's own encryption
A white padlock on a dark digital background.
A new and dangerous keylogger is on the loose - here's how to stay safe
Image of laptop infected with malware threat
This devious new macOS malware disguises itself as Chrome, Zoom installers
A display showing off the Google TV homepage, with icons for 1917, Scoob!, YouTube and Twitch (among others)
This dangerous malware botnet now covers 1.6 million Android TVs - find out if you're at risk
Latest in Security
IBM office logo
IBM to provide platform for flagship cyber skills programme for girls
Hacker silhouette working on a laptop with North Korean flag on the background
North Korea unveils new military unit targeting AI attacks
An image of network security icons for a network encircling a digital blue earth.
US government warns agencies to make sure their backups are safe from NAKIVO security issue
Laptop computer displaying logo of WordPress, a free and open-source content management system (CMS)
This top WordPress plugin could be hiding a worrying security flaw, so be on your guard
Computer Hacked, System Error, Virus, Cyber attack, Malware Concept. Danger Symbol
Veeam urges users to patch security issues which could allow backup hacks
UK Prime Minister Sir Kier Starmer
The UK releases timeline for migration to post-quantum cryptography
Latest in News
Google Gemini AI
Gmail is adding a new Gemini AI tool to help smarten up your work emails
Android 16 logo on a phone
Here's how Android 16 will upgrade the screen unlocking process on your Pixel
Visual Intelligence identifying a dog
AirPods with cameras for Visual Intelligence could be one of the best personal safety features Apple has ever planned – here's why
Nvidia AMD
Nvidia rumors suggest it's working on two affordable GPUs to spoil AMD's party
A Minecraft sheep.
Minecraft developer rejects generative AI, 'it's important that it makes us feel happy to create as humans'
IBM office logo
IBM to provide platform for flagship cyber skills programme for girls