Earth Bogle Campaign Deploys njRAT via Geopolitical Lures

January 19, 2023

Middle Eastern geopolitical themed lures were used to distribute njRAT across the Middle East and North Africa.
Public cloud storage services were utilized to host malware while compromised web servers were used to distribute the malicious remote access trojan.
A malicious CAB file was used as the first stage loader while a PowerShell script injected njRAT into the compromised system.