HZ Rat backdoor for macOS harvests data from WeChat and DingTalk

A version of the HZ Rat backdoor targeting users of China’s WeChat and DingTalk was uploaded to VirusTotal in July 2023 and was not detected by any vendor, research by Kaspersky suggests. Author: AlienVault

Related Tags:
wechat

dingtalk

instant messengers

HZ RAT

macos

trojan

T1573

T1090

backdoor

Associated Indicators:
7355E0790C111A59AF377BABEDEE9018

DD71B279A0BF618BBE9BB5D934CE9CAA

6D478C7F94D95981EB4B6508844050A6

7A66CD84E2D007664A66679E86832202

6CC838049ECE4FCB36386B7A3032171F

DA07B0608195A2D5481AD6DE3CC6F195

8D33F667CA135A88F5BF77A0FAB209D4

7005C9C6E2502992017F1FFC8EF8A9B9

287CCBF005667B263E0E8A1CCFB8DAEC