logo

[Heads-Up] Phishing Campaign Delivers VCURMS RAT

ID: 04a83826-13a8-5c94-9a46-4318a1cbdd71

STIX ID: report--04a83826-13a8-5c94-9a46-4318a1cbdd71

Feed Name: KnowBe4 Blog

Threat Score
70/100

Date Published: 2024-03-21

Date Updated: 2026-04-28

Author: Stu Sjouwerman

...
...

Fortinet researchers uncovered a phishing campaign that delivers a malicious Java downloader hosted on public services (AWS/GitHub) which installs a new VCURMS RAT and STRRAT; the malware suite steals browser data, credentials, and includes a keylogger and modified stealer while using obfuscation and email-based command-and-control.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.