Quasar Linux RAT Steals Developer Credentials for Software Supply Chain Compromise

Quasar Linux RAT Steals Developer Credentials for Software Supply Chain Compromise

Quasar Linux RAT Steals Developer Credentials for Software Supply Chain Compromise

https://thehackernews.com/2026/05/quasar-linux-rat-steals-developer.html

Publish Date: 2026-05-08 07:00:00

Source Domain: thehackernews.com

Summary:
Trend Micro researchers uncovered a previously undocumented Linux implant, Quasar Linux RAT (QLNX), which targets developers and DevOps personnel to establish unauthorized access for a variety of post-compromise activities. These include credential harvesting, keylogging, file manipulation, and network tunneling. The malware specifically focuses on extracting critical credentials such as tokens, configuration files, and authentication tokens from high-value files. QLNX can install itself from memory, uses multiple methods to persist on the host, and conceal – The generated text has been blocked by our content filters.