A sophisticated phishing campaign is distributing VenomRAT malware via virtual hard disk (VHD) files. Emails with purchase orders contain these archives, which, when opened, execute a highly obfuscated batch script using PowerShell for malicious activities. The malware establishes persistence, capturing sensitive data and maintaining communication with its operators. It uses encryption for secure command exchange.

VPN Vulnerabilities Emerges As The Key Tool for Threat Actors to Attack Organizations
Cybercriminals increasingly target VPN infrastructure, exploiting long-standing vulnerabilities like CVE-2018-13379 and CVE-2022-40684. These flaws have a 97% risk score for exploitation and are linked to