Fake Video Meeting Invites Trick Users Into Installing RMM Tools
ID: 48c95eca-ac14-5f9f-add2-6c50d8b836d1
STIX ID: report--48c95eca-ac14-5f9f-add2-6c50d8b836d1
Feed Name: KnowBe4 Blog
Threat Score
Attackers are using convincingly spoofed video-conference invites and fake meeting landing pages to trick users into installing a digitally signed remote monitoring and management (RMM) tool presented as a critical application update; once installed (examples include Datto RMM, LogMeIn, ScreenConnect) the tools grant remote administrative access and a persistent foothold while evading signature-based defenses, according to Netskope.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
