Chaos ransomware is utilizing msaRAT to hide command-and-control traffic within legitimate headless Chrome and Edge browser processes to evade detection.
Russian hackers are deploying the Starland RAT via trojanized versions of common business tools like Zoom and WebEx to target firms in the US and Europe.