From at least February 2024, victims speaking Spanish are the focus of an email phishing operation that distributes a brand-new remote access trojan (RAT) known as Poco RAT.
According to cybersecurity firm Cofense, the attacks mostly target the mining, industrial, hotel, and utility sectors.
According to the report, the bulk of the malware’s custom code seems to be concentrated on anti-analysis, interacting with its command-and-control center (C2), downloading and executing files, with only a little amount of attention going toward monitoring or credential harvesting.
Phishing emails with lures related to finance start infection chains by tricking recipients into clicking on an embedded URL that leads to a 7-Zip archive file stored on Google Drive read more about New Poco RAT Targets Spanish-Speaking Victims in Phishing Campaign.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
