A previously undocumented Linux malware tool called Quasar Linux RAT (QLNX) is being used to compromise developers’ systems. Once installed, it provides attackers with the ability to harvest credentials, capture keystrokes, manipulate files, monitor clipboard activity, and establish network tunnels. The malware specifically targets developer and DevOps credentials throughout the software supply chain.
