Various organizations in Ukraine have fallen victim to a phishing scheme aimed at propagating the remote access trojan known as Remcos RAT.
“As part of the decoy, the malicious files adopt Russian terminology connected to the deployment of forces in Ukraine,” as stated by Guilherme Venere, a researcher from Cisco Talos, in a recent publication. “Through PowerShell, the downloader establishes communication with servers enclosed within geographical restrictions in Russia and Germany in order to
“As part of the decoy, the malicious files adopt Russian terminology connected to the deployment of forces in Ukraine,” as stated by Guilherme Venere, a researcher from Cisco Talos, in a recent publication. “Through PowerShell, the downloader establishes communication with servers enclosed within geographical restrictions in Russia and Germany in order to
