New Malware ‘LucidRook’ Targets NGOs and Universities in Taiwan
A newly identified malware, dubbed LucidRook, is making waves as it targets non-governmental organizations and universities in Taiwan. Discovered by Cisco Talos researchers, this Lua-based threat has emerged in spear-phishing campaigns since October 2025, relying heavily on deceptive emails containing password-protected archives.
The attack, attributed to a group known as UAT-10362, utilizes various infection methods, including fake antivirus software and LNK shortcut files. Once infiltrated, LucidRook gathers sensitive information and exfiltrates it to attacker-controlled servers.
The impact of this malware could be severe, potentially compromising sensitive data for affected organizations. To protect against such threats, users are advised to be wary of unsolicited emails, avoid clicking on suspicious links, and ensure that security software is up to date.
Risk Level: High
With its stealthy execution and targeted approach, organizations should prioritize vigilance and readiness against this evolving threat.
Source: View Original Report
