The Raspberry Robin Worm Has Infected Hundreds of Windows Networks

Microsoft has discovered the Raspberry Robin malware in hundreds of Windows networks

slashdotted
CodeX

--

Photo by Abdul Rehman Khalid on Unsplash

According to Microsoft, a newly discovered Windows worm has been found on the networks of hundreds of firms from numerous industrial sectors.

The Raspberry Robin virus spreads through infected USB devices and was discovered by Red Canary intelligence investigators in September 2021.

Microsoft supplied this information in a confidential threat intelligence alert delivered to Microsoft Defender for Endpoint subscribers and obtained by BleepingComputer.

The Raspberry Robin worm infection flow (Red Canary) uses simple Windows utilities to infect new devices.

As previously stated, Raspberry Robin spreads to new Windows computers using infected USB devices that carry a malicious.LNK file.

“While msiexec.exe downloads and executes legitimate installer packages, adversaries also leverage it to deliver malware,” Red Canary researchers stated.

Microsoft issued a secret threat intelligence assessment alerting enterprises that a worm known as Raspberry Robin has infected hundreds of Windows networks.

Raspberry Robin is…

--

--