Beware of Fake Bitwarden Sites Spreading ZenRAT Malware

Fake Bitwarden websites are distributing installers that contain a new password-stealing malware called ZenRAT. The malware targets Windows users and collects browser data, credentials, and information about the infected host. The fake websites imitate the legitimate Bitwarden site and use typosquatting to deceive victims. Researchers at Proofpoint discovered ZenRAT and found that it is designed to be modular, with the potential for expanded capabilities. The malware is delivered through phishing campaigns and redirects users to a cloned page of an article about Bitwarden if they are not using Windows. The Bitwarden password manager has gained popularity, making it an attractive target for cybercriminals.
- Fake Bitwarden sites push new ZenRAT password-stealing malware BleepingComputer
- New ZenRAT Malware Targeting Windows Users via Fake Password Manager Software The Hacker News
- New Trojan ZenRAT masquerades as Bitwarden password manager CSO Online
- This destructive malware is targeting Windows users as a fake password manager, so beware TechRadar
- Fake Bitwarden Password Manager Website Drops Windows ZenRAT HackRead
Reading Insights
0
2
2 min
vs 3 min read
81%
547 → 103 words
Want the full story? Read the original article
Read on BleepingComputer