The malicious installers of a remote access Trojan called ValleyRAT have been distributed via bogus websites that advertise Google Chrome.
The malware was first detected in 2023. It is attributed to a threat agent tracked as Silver Fox. Previous attack campaigns primarily targeted Chinese-speaking areas like Hong Kong and Taiwan.
This actor is increasingly focusing on key roles

