
Beware of Fake Bitwarden Sites Spreading ZenRAT Malware
Fake Bitwarden websites are distributing installers that contain a new password-stealing malware called ZenRAT. The malware targets Windows users and collects browser data, credentials, and information about the infected host. The fake websites imitate the legitimate Bitwarden site and use typosquatting to deceive victims. Researchers at Proofpoint discovered ZenRAT and found that it is designed to be modular, with the potential for expanded capabilities. The malware is delivered through phishing campaigns and redirects users to a cloned page of an article about Bitwarden if they are not using Windows. The Bitwarden password manager has gained popularity, making it an attractive target for cybercriminals.
