Clever Phishing Campaign Exploits Corporate Trust in Pakistan
ID: 9aa60bf9-be2c-579a-90cf-3cc0181ff5b2
STIX ID: report--9aa60bf9-be2c-579a-90cf-3cc0181ff5b2
Feed Name: securityonline.info
Threat Score
A targeted espionage campaign against Pakistani public-safety organizations leveraged spear-phishing with malicious Word and PDF attachments to abuse Visual Studio Code Remote Tunnels and ClickOnce deployments, enabling attackers to capture device authorization tokens (via macros and Discord webhooks) and enroll victim machines under attacker-controlled developer accounts to gain persistent remote access.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
