cognitive cybersecurity intelligence

News and Analysis

Search

Gamaredon Hackers Weaponize LNK Files to Deliver Remcos backdoor

Cisco Talos discovered a consistent cyber campaign by threat group Gamaredon against Ukrainian users. The campaign uses spear-phishing tactics, sending malicious LNK files disguised as office documents related to the Ukraine conflict. The attack initiates by executing a PowerShell downloader within the LNK file. The downloaded payload allows the attackers to sidestep traditional detection mechanisms. The files suggest an attempt to exploit sensitive geopolitical themes.

Source: gbhackers.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts