Gophish Framework Used in Phishing Campaigns to Deploy Remote Access Trojans

October 22, 2024 at 02:15PM A new phishing campaign targets Russian-speaking users, using the Gophish toolkit to distribute DarkCrystal RAT and PowerRAT trojans. Attackers employ malicious documents and HTML links to trigger infections that allow remote access and data exfiltration. The evolving threats emphasize advanced techniques to evade detection and enhance malware effectiveness. ### Meeting … Read more

New HTML Smuggling Campaign Delivers DCRat Malware to Russian-Speaking Users

September 27, 2024 at 05:42AM Russian-speaking users are being targeted in a new cybercrime campaign using a commodity trojan called DCRat distributed through HTML smuggling. The technique involves embedding or retrieving the payload within HTML files, which are then propagated via bogus sites or malspam campaigns. Organizations are advised to monitor HTTP and HTTPS traffic … Read more

Watch Out for Spoofed Zoom, Skype, Google Meet Sites Delivering Malware

March 7, 2024 at 01:33AM Threat actors are using fake websites promoting popular video conferencing apps like Google Meet, Skype, and Zoom to distribute malware targeting Android and Windows users. The attackers are using typosquatting tricks to deceive users into downloading Remote Access Trojans. Additionally, a new malware called WogRAT is targeting Windows and Linux … Read more