Amnesia RAT is a new multi-stage phishing campaign that uses ransomware and a remote access virus to target users in Russia.
In a technical analysis released this week, Fortinet FortiGuard Labs analyst Cara Lin stated, “The attack starts with social engineering lures delivered via business-themed documents crafted to appear routine and benign.” While malicious activity operates in the background in silence, these papers and the scripts that go with them work as visual distractions, leading victims to fictitious chores or status updates.
There are two distinctive aspects to the campaign. First, it distributes various types of payloads via several public cloud services. Dropbox is utilized to stage binary payloads, whereas GitHub is mostly used for script distribution. This division effectively increases resilience by making takedown efforts more difficult.
According to Fortinet, the operational misuse of defendnot to disable Microsoft Defender is another distinctive feature of the campaign read more about Multi-Stage Phishing Campaign Targets Russia with Amnesia RAT and Ransomware.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
