Remote Access Trojan

LaZy ScripTer

First seen: 2020-01 • Status: active

Currently Active Threat

LaZy ScripTer is a hacking tool used by Middle Eastern hackers to target airlines and aerospace companies.

Overview

LaZy ScripTer is a RAT associated with a Middle Eastern threat actor targeting aviation and aerospace industries.

Also Known As

LaZyScripter, Lazy Scripter

How It Spreads

  • Spearphishing
  • Malicious documents

What It Does

  • Remote access
  • Data theft
  • Espionage

Is your business exposed?

Target Platforms

Windows

Detection Tips

  • Monitor for aviation-themed phishing
  • Watch for associated IOCs

MITRE ATT&CK Techniques

T1566, T1059, T1005

If You're Infected

  1. 1.

    Isolate infected systems

  2. 2.

    Engage threat intelligence

Related Malware

Asyncrat

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required