Remove netsupport-rat-attacks
article thumbnail

Researchers Warn NetSupport RAT Attacks Are on the Rise

Heimadal Security

Researchers warn of an increase in NetSupport RAT (Remote Access Trojan) infections impacting education, government, and business services sectors. NetSupport Manager is a remote control and desktop management tool by NetSupport Ltd.

article thumbnail

One year later, Rhadamanthys is still dropped via malvertising

Malwarebytes

In this blog post, we detail the latest distribution chain related to this malware. At the time, victims who clicked the ad and visited the site were tricked with a download for NetSupport RAT. The infrastructure used in this particular attack was reported to the relevant parties.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

FakeSG campaign, Akira ransomware and AMOS macOS stealer

SecureList

FakeSG “FakeSG” is the name we gave to a new NetSupport RAT distribution campaign. Over the course of time, the attackers have changed the download URL to stay undetected longer. Others emerged more recently, as we discussed in some of our previous blog posts. For an example, look at the image below.

article thumbnail

Mac users targeted in new malvertising campaign delivering Atomic Stealer

Malwarebytes

In this blog post, we will provide details on one campaign targeting TradingView, a popular platform and app to track financial markets. The attacker's goal is to simply run their program and steal data from victims and then immediately exfiltrate it back to their own server.

article thumbnail

Connecting the Bots – Hancitor fuels Cuba Ransomware Operations

Security Affairs

The Cuba Ransomware gang has partnered with the crooks behind the Hancitor malware in attacks aimed at corporate networks. As a loader, it has been used to download other malware families, such as Ficker stealer and NetSupport RAT , to compromised hosts. The Hancitor downloader has been around for quite some time already.