Proxy Malware Used by Ransom Groups
Cybersecurity researcher REXor has discovered that various ransomware groups, including ViceSociety, Rhysida, and GoldDupont, are using SystemBC malware – also known as Coroxy or DroxiDat – for illicit purposes. Active since 2018, SystemBC is a versatile malware which can function as a proxy, bot, backdoor, and RAT, infiltrating systems through diverse methods and adapting to attackers’ needs.