logo

Hackers use RMM tools to breach freighters and steal cargo shipments

ID: 0427a5db-e123-586b-9fd2-ded7bc8a3f7e

STIX ID: report--0427a5db-e123-586b-9fd2-ded7bc8a3f7e

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2025-11-03

Date Updated: 2026-07-18

Author: Bill Toulas

...
...

Researchers observed an active campaign since at least January that targets freight brokers, carriers, and supply-chain providers with tailored phishing and load-board compromises to deliver RMM tools (e.g., ScreenConnect, NetSupport, PDQ Connect) and information stealers; attackers then use remote access to modify bookings, intercept or reroute shipments, impersonate carriers, harvest credentials, and facilitate physical cargo theft across multiple countries.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.