Quasar RAT Employs DLL Sideloading to Stay Under the Radar
Quasar RAT, an open-source remote access trojan also known as CinaRAT or Yggdrasil, has been spotted leveraging a new Microsoft file as part of its DLL sideloading process to stealthily drop malicious payloads on compromised Windows systems. Once the Quasar RAT payload is executed in the computer’s memory, it further employs the process hollowing technique that allows it to conceal its malicious intent and make detection more challenging.