A new variant of the RomCom malware family called SnipBot has been discovered.SnipBot uses advanced evasion techniques and a custom code obfuscation method to move laterally within networks and exfiltrate data.It is actively deployed by the Tropical Scorpius group for Cuba ransomware distribution.SnipBot indicates a shift in focus from financial gain to cyber-espionage operations, primarily targeting Ukraine and its allies.