LIVE · cybersecurity feed
Live wire

asyncrat

screenconnecthigh

The SOC Files: ScreenConnect masked as freeware. An inside look at a large-scale campaign

Threat actors are distributing malicious installer archives that masquerade as popular freeware, such as OBS Studio and Bandicam. These installers contain a legitimate Microsoft binary alongside a rogue DLL that enables DLL sideloading. This process deploys the ScreenConnect remote access tool, which attackers use to maintain control over compromised systems and potentially execute further payloads like AsyncRAT.

malwarehigh

Threat Actors Weaponize AI Hype to Deliver AsyncRAT

Malicious actors are exploiting the current interest in artificial intelligence by distributing malware. They are using deceptive AI-themed documents that contain hidden scripts to install AsyncRAT, a tool that grants them remote control over compromised systems.