logo

Hackers Are Using LinkedIn DMs and PDF Tools to Deploy Trojans

ID: 66d589a4-8aa9-5059-896e-958980b3e7bf

STIX ID: report--66d589a4-8aa9-5059-896e-958980b3e7bf

Feed Name: HackRead

Threat Score
70/100

Date Published: 2026-01-22

Date Updated: 2026-04-22

Author: Deeba Ahmed

...
...

ReliaQuest Threat Research identified a LinkedIn-based social engineering campaign that builds trust via direct messages to trick professionals into downloading a RAR bundle containing a legitimate PDF reader, a hidden malicious DLL used for side‑loading, a portable Python runtime, and a script that installs a Remote Access Trojan (RAT); the report highlights DLL side‑loading and the use of open-source tools to evade security and connects this activity to a broader trend of side‑loading attacks.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.