cognitive cybersecurity intelligence

News and Analysis

Search

A new fileless variant of Remcos RAT observed in the wild

Fortinet researchers have uncovered a phishing campaign deploying a new fileless version of the Remcos Remote Administration Tool (RAT), a commercial tool used for malicious remote control of computers. Its procedure involves using a malicious Excel file disguised as an order document, exploiting a vulnerability to execute a code, stealthily downloading and activating the Remcos RAT, and maintaining its activities by adding a new auto-run item to the system registry.

Source: securityaffairs.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts