RomCom RAT is being distributed by hackers Using Rogue Versions of KeePass and SolarWinds Software
With the use of rogue versions of software such as SolarWinds Network Performance Monitor, KeePass password manager, and PDF Reader Pro, the operators of RomCom RAT are continuing to evolve their campaigns. Targets of the operation consist of victims in Ukraine and select English-speaking countries like the U.K. “Given the geography of the targets and the current geopolitical situation, it’s unlikely that the hackers like RomCom RAT threat actor is cybercrime-motivated,” the BlackBerry Threat Research and Intelligence Team said in a new analysis. The Canadian cybersecurity company disclosed a spear-phishing campaign aimed at Ukrainian entities to deploy a remote access trojan called RomCom RAT and after a week of the […]