Hackers disguise malicious scripts in a fake Minesweeper game version, enabling installation of SuperOps RMM through phishing emails. The group 'UAC-0188' aka 'FRwL' targets financial firms in Europe and the U.S.
Phishing emails impersonate a medical center, containing a deceptive 33 MB attachment with Minesweeper game code. The code conceals Python script to download SuperOps RMM for remote access.
Collection
[
|
...
]