This widely used Remote Monitoring tool is being used to deploy AsyncRAT to steal passwords




  • Phishing emails are spreading a trojanized version of ScreenConnect, tricking victims into installing remote access malware
  • Once installed, attackers deploy AsyncRAT, a fileless trojan that logs keystrokes, steals credentials, and more
  • AsyncRAT’s stealth and open-source nature make it a favorite among diverse threat actors

Criminals are using a trojanized version of a popular, legitimate remote access tool, to drop remote access trojans (RAT) on target devices, researchers are warning.

Earlier this week, security researchers from LevelBlue said they saw phishing emails in which a tainted variant of ConnectWise ScreenConnect was being shared, masquerading as financial and other business documents.

https://cdn.mos.cms.futurecdn.net/eVgzzXmQMEyvzfYvAaAMrX.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img