National Cyber Warfare Foundation (NCWF) Forums


XWorm, Remcos RAT Evade EDRs to Infect Critical Infrastructure


0 user ratings
2023-08-20 15:57:54
milo
Blue Team (CND)

 - archive -- 
Disguised as harmless PDF documents, LNK files trigger a PowerShell script, initiating a Rust-based injector called Freeze[.]rs and a host of malware infections.



Source: DarkReading
Source Link: https://www.darkreading.com/ics-ot/xworm-remcos-rat-evade-edrs-infect-critical-infrastructure


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2024 - National Cyber Warfare Foundation - All rights reserved worldwide.