A campaign uses fake Microsoft Store product pages to trick Windows users into installing legitimate remote-management software. Attackers then use that access to deploy AgtaBackup RAT, a custom .NET malware strain that can steal browser data, record keystrokes, capture screens, and run commands without the user seeing them. Palo Alto Networks... Weiterlesen
Intelligence View
⚡ tsecurity.de Intelligence
Fake Microsoft Store Pages Deliver a RAT That Lets Attackers Watch and Control Windows PCs
A campaign uses fake Microsoft Store product pages to trick Windows users into installing legitimate remote-management software. Attackers then use that access to deploy AgtaBackup RAT, a custom .NET malware strain that can steal browser…
Reagiere als Erste:r — dein Feedback zählt!
2. Cyber Threat Intelligence & Forensik
CTI Threat Relationship Graph5 Knoten / 4 Relationen
MITRE ATT&CK Matrix Navigator 14 Taktiken
1 belegte TechnikenLive-Mapping
Reconnaissance
–
Resource Development
–
Initial Access
–
Execution
–
Persistence
–
Privilege Escalation
–
Defense Evasion
–
Credential Access
–
Discovery
–
Lateral Movement
–
Collection
–
Command and Control
Exfiltration
–
Impact
–