Skip to content

BLUERABBIT Backdoor Encrypts Files, Wipes Windows Systems

Gbhackers Mayura Kathir June 11, 2026

A new Golang-based backdoor dubbed BLUERABBIT has been observed performing combined data theft, file encryption and destructive disk wiping against Windows hosts. First seen in mid-to-late March 2026 and suspected to target Israeli entities, BLUERABBIT implements a full-spectrum intrusion framework: remote access, system profiling, exfiltration to attacker-controlled cloud storage, file encryption that appends a .candy […]

Extracted Entities