Tuesday, July 21 2026
Link Compose
  • Home
  • Ai writing prompts
  • Make Money With AI
  • AI Tips
  • Contact

Webrat turns GitHub PoCs into a malware trap

by
Share 0FacebookTwitterPinterestWhatsapp
146

Webrat turns GitHub PoCs into a malware trap

Apart from dumping the exploit code, the repositories included detailed sections with overviews of the vulnerability, system impact, install guides, usage steps, and even mitigation advice. The consistency of the format to a professional PoC writeup suggests the descriptions are machine-generated to avoid detection by seasoned professionals, Kaspersky researchers noted in a blog post.

The malicious payload and behavior

Beneath the polished README, the attackers dumped a password-protected ZIP linked in the repository. The archive password was hidden in file names, something easily missable by unsuspecting eyes. Inside, the key components include a decoy DLL, a batch file to launch the malware, and the primary executable (like rasmanesc.exe) capable of escalating privileges, disabling Windows Defender, and retrieving the real Webrat payload from hardcoded command-and-control (c2) servers.

Once executed, Webrat installs a backdoor on the host system. The backdoor can exfiltrate credentials, access cryptocurrency wallets, spy through webcams and microphones, log keystrokes, and steal data from messaging apps like Telegram, Discord, and gaming platforms such as Steam.

GitHubmalwarePoCstrapturnsWebrat
Share 0 FacebookTwitterPinterestWhatsapp

LEGAL INFORMATION

  • Privacy Policy
  • Terms Of Service
  • Social Media Disclaimer
  • DMCA Compliance
  • Anti-Spam Policy

© 2026 - LinkCompose.com. All Rights Reserved.

Link Compose
  • Home
  • Ai writing prompts
  • Make Money With AI
  • AI Tips
  • Contact