Loading...

19 Jun 2026 19:32

Tech & Start Up The Latest

Kaspersky uncovers PipeMagic backdoor attacks businesses in Saudi Arabia through fake ChatGPT application

Deploying a backdoor that both extracts sensitive data and enables full remote access to compromised devices

Kaspersky’s Global Research and Analysis Team (GReAT) has recently discovered a new malicious campaign involving the PipeMagic Trojan, which has shifted from targeting entities in Asia to expanding its reach to organizations in Saudi Arabia.

The attackers are using a fake ChatGPT application as bait, deploying a backdoor that both extracts sensitive data and enables full remote access to compromised devices. The malware also operates as a gateway, enabling the introduction of additional malware and the launch of further attacks across corporate network.

Kaspersky initially discovered PipeMagic backdoor in 2022, this plugin-based trojan was targeting entities in Asia at that time. The malware is capable of functioning as both a backdoor and a gateway. In September 2024, Kaspersky’s GReAT observed a resurgence of PipeMagic, this time targeting organizations in Saudi Arabia.

This version uses a fake ChatGPT application, built with the Rust programming language. At first glance, it appears legitimate, containing several common Rust libraries used in many other Rust-based applications. However, when executed, the application displays a blank screen with no visible interface and hides a 105,615-byte array of encrypted data which is a malicious payload.

In the second stage, the malware searches for key Windows API functions, by searching the corresponding memory offsets using names hashing algorithm. It then allocates memory, loads the PipeMagic backdoor, adjusts necessary settings, and executes the malware.

One of unique features of PipeMagic is that it generates a 16-byte random array to create a named pipe in the format \\.\pipe\1.<hex string>. It spawns a thread that continuously creates this pipe, reads data from it, and then destroys it. This pipe is used for receiving encoded payloads, stop signals via the default local interface. PipeMagic usually works with multiple plugins downloaded from a command-and-control (C2) server, which, in this case, was hosted on Microsoft Azure.

“Cybercriminals are constantly evolving their strategies to reach more prolific victims and broaden their presence, as demonstrated by the PipeMagic Trojan’s recent expansion from Asia to Saudi Arabia. Given its capabilities, we expect to see an increase in attacks leveraging this backdoor,’ comments Sergey Lozhkin, Principal Security Researcher at Kaspersky’s GReAT.

In order to avoid falling victim to a targeted attack by a known or unknown threat actor, Kaspersky researchers recommend implementing the following measures:

Be cautious when downloading software from the internet, especially if it’s from a third-party website. Always try to download software from the official website of the company or service that you are using.

Provide your SOC team with access to the latest threat intelligence (TI). Kaspersky Threat Intelligence is a single point of access for the company’s TI, providing it with cyberattack data and insights gathered by Kaspersky spanning over 20 years.

Upskill your cybersecurity team to tackle the latest targeted threats with Kaspersky online training developed by GReAT experts.

For endpoint level detection, investigation, and timely remediation of incidents, implement EDR solutions such as Kaspersky Next.

In addition to adopting essential endpoint protection, implement a corporate-grade security solution that detects advanced threats on the network level at an early stage, such as Kaspersky Anti Targeted Attack Platform.

As many targeted attacks start with phishing or other social engineering techniques, introduce security awareness training and teach practical skills to your team.

To gain exclusive insights into the latest APT campaigns and emerging trends in the threat landscape, register for the Security Analyst Summit here.

(Visited 75 times, 1 visits today)
peri hokiperihokiduta 76AWSBEThttps://sintnicolaasschool.com/https://abc1131aa.com/kincir88cakar76Slot mahjonghttps://www.abc1131.it.com/Gerakan99Era77stc76duta76duta76 loveduta76 careduta76bduta76 sejiwaduta76 lokasiterdekatduta76 africafuelduta76 oscarmykeduta76 naptimepkduta76 daikinduta76 raes-munichduta76 destyduta76 bio-linkduta76 lynkduta76 heylinkduta76 bioduta76 radarkeduWar138navigasi rtp live eksploitasi peluang taktik mahjong wild deluxe analisa dadu sicbo strategi gates of olympusanalisa komprehensif rtp live pola algoritma strategi mahjong ways 2 pgsoft taktik baccarat teknik starlight princessoptimasi presisi analisa strategi blackjack teknik membaca pola mahjong wins 3 taktik peluang rtp live sweet bonanza pragmaticdekonstruksi peluang taktis strategi analisa roulette pemetaan pola mahjong ways 2 pgsoft teknik membaca rtp live wild west goldeksekusi taktis analisa probabilitas strategi komprehensif sv388 teknik membaca peluang blackjack pola mahjong wins 3 pemetaan rtp live sugar rushstrategi rasional baca rtp live analisa pola gates of olympus taktik sicbo teknik mahjong wild deluxe jitutaktik eksekusi presisi sinkronisasi analisa rtp live pola mahjong ways 2 pgsoft teknik baccarat kuantitatif peluang starlight princesseksploitasi algoritma analisa strategi taktis menaklukkan blackjack pemetaan pola mahjong wins 3 teknik rtp live sweet bonanza pragmaticmetodologi optimasi peluang analisa teknik roulette klasik taktik pola mahjong ways 2 pgsoft strategi rtp live wild west goldanalisa matriks peluang sinkronisasi teknik blackjack taktik sv388 strategi pola rtp live mahjong wins 3 sugar rush pragmatichttps://www.thewayofthespirit.com/contact/kalkulasi taktik cerdas strategi peluang sicbo teknik pola mahjong wild deluxe analisa rtp live gates of olympusdekonstruksi varians strategi pola mahjong ways 2 pgsoft analisa peluang baccarat taktik teknik rtp live starlight princesseksekusi silang taktik teknik strategi blackjack analisa pola mahjong wins 3 pragmatic peluang rtp live sweet bonanzaformulasi taktik peluang roulette analisa pola mahjong ways 2 pgsoft teknik jitu strategi rtp live wild bounty hunternavigasi probabilitas analisa pola mahjong wins 3 pragmatic taktik peluang blackjack strategi sv388 teknik rtp live sugar rushalgoritma menang taktik mahjong wild deluxe peluang sicbo analisa pola gates of olympusanalisa rtp live peluang teknik mahjong ways 2 pgsoft baccarat starlight princessbedah peluang rtp live teknik transisi blackjack sweet bonanza mahjong wins 3 pragmaticeksekusi taktis data peluang roulette teknik wild bounty hunter rtp live mahjong ways 2 pgsoftdekonstruksi multi disiplin strategi blackjack peluang sv388 teknik sugar rush pola mahjong wins 3analisis sinyal transisi algoritma mahjong ways dan kecepatan runtuhan nilai rtp berdasarkan densitas intervalanatomi kontrol risiko blackjack dan analisa sv388 terhadap anomali nilai rtp sistem dinamis modernevaluasi volatilitas rtp dan hit frequency sweet bonanza sugar rush pasca kalibrasi sistem digitalkajian karakteristik mekanik baru scatter hitam mahjong ways dan retensi komunitas digital terkinipembacaan distribusi pengali bertingkat multiplier asimetris wild tengah mahjong wins 3metodologi taktik analisis lintas platform multigamekalkulasi presisi rasio rtp sugar rush sv388evaluasi cognitive pattern cascade mahjong wins 3eksplorasi arsitektur algoritma mahjong ways 2 wwgtitik koordinasi jaringan gates of olympus rtpmemanfaatkan big data dan prediksi ai pergeseran algoritma mahjong ways 2 peluang rtp simbol langkamenghitung ekspektasi target perputaran dadu sicbo berdasarkan analisis statistik data rtp terkinimenguak skema algoritma terbaru pragmatic play simbol premium dan perubahan rtp gates of olympuspembuktian teknis scatter hitam mahjong wins 3 dan stabilitas nilai rtp komunitas analisstudi terbaru mahjong ways 2 perubahan struktur kombinasi dan fluktuasi rtp pasca fenomena scatter hitamsinergi eksekusi analisa strategi dadu sicbo strategi pola gates of olympus teknik taktik rtp live mahjong wild deluxeformula hibrida strategi peluang baccarat teknik analisa mahjong ways 2 pgsoft taktik pola rtp live starlight princessintegrasi varians analisa peluang blackjack teknik pola mahjong ways 3 pragmatic strategi rtp live sweet bonanza 2500rotasi presisi algoritmik taktik peluang roulette strategi analisa mahjong ways 2 pgsoft teknik pola rtp live wild west goldeskalasi profit taktik analisa peluang sv388 strategi blackjack teknik pola rtp live mahjong wins 3 pragmatic sugar rushdampak ekonomi global pola konsumsi baccarat liveanalisis arsitektur sistem algoritma mahjong waysevaluasi perilaku konsumen logika game virtualstudi komparasi simbolik scatter wild mahjong waysekspansi perspektif baru algoritma mahjong waysjurnal pemodelan digital variabilitas komputasiparadoks probabilitas tata kelola manajemen modalimplementasi metrik analitik starlight princesskomputasi adaptif mahjong ways dinamika griddesentralisasi gaya bermain algoritma deteksi polapola scatter mahjong ways dalam gameplaymenelusuri scatter mahjong ways simbolobservasi aktivitas scatter mahjong waystren scatter mahjong ways dalam premiumeksplorasi aktivitas scatter mahjong waysanalisis bertahap perubahan hasil mahjongmengkaji dinamika hasil mahjong winspendekatan analitik terhadap perubahan hasilanalisis perubahan hasil mahjong winsstudi mendalam perubahan hasil mahjonganalisis aktivitas scatter mahjong waysanalisis siklus aktivitas pemain mahjong Top