Experts of Kaspersky Lab have published a new research report about a malicious program “NetTraveler” which has infected 350 high-profile victims in over 40 countries. The NetTraveler kit has infected victims across multiple establishments in both the public and private sectors, including government institutions, embassies, the oil & gas industry, research centers, military contractors and activists.
During Kaspersky Lab’s analysis, the experts identified six victims that had been infected by both NetTraveler and Red October cyber espionage operation analyzed by Kaspersky Lab in January 2013.
According to Kaspersky Lab’s report, NetTraveler group targeted nanotechnology, energy production, nuclear power, lasers, medicine and communications field for cyber espionage activities.
Experts also obtained infection logs from several of NetTraveler’s command and control servers (C&C) from the analysis. They calculated the amount of stolen data stored on NetTraveler’s C&C servers to be more than 22 gigabytes.
In addition, the NetTraveler toolkit was able to install additional info-stealing malware as a backdoor, and it could be customized to steal other types of sensitive information such as configuration details for an application or computer-aided design files.
Uncategorized
Kaspersky Lab reports data theft in 350 victims by NetTraveler Toolkit
1 min read0 views




