The new C++ variant of BellaCiao, dubbed BellaCPP by Kaspersky, has been linked to the Iranian hacking group Charming Kitten, showcasing evolved strategies in malware deployment.
According to Kaspersky, the BellaCPP variant eliminates the web shell used by BellaCiao, indicating a shift in operational tactics for the Charming Kitten group, focusing on stealth techniques.
Mert Degirmenci noted that BellaCiao's unique approach combines stealthy persistence with the ability to create covert tunnels, enhancing its effectiveness in cyber intrusions.
Charming Kitten has a history of exploiting known vulnerabilities in widely used software, which emphasizes the need for constant vigilance against such advanced persistent threats.
Collection
[
|
...
]