Quasar Linux RAT Steals Developer Credentials for Software Supply Chain Compromise

May 8, 2026

A previously undocumented Linux implant codenamed Quasar Linux RAT (QLNX) is targeting developers’ systems to establish a silent foothold as well as facilitate a broad range of post-compromise functionality, such as credential harvesting, keylogging, file manipulation, clipboard monitoring, and network tunneling.
“QLNX targets developers and DevOps credentials across the software supply chain,”

Get Free Report & Network Analysis

Please check your email for the free report.