⤷ Title: NetSupport RAT Campaign Abuses ClickFix to Infect Hosts; 3 Threat Clusters Use RMM for Covert Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 27 Oct 2025 00:42:07 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #EVALUSION #Multi_Cluster #NetSupport RAT #powershell #Remote Access Trojan #RMM Abuse
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 27 Oct 2025 00:42:07 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #EVALUSION #Multi_Cluster #NetSupport RAT #powershell #Remote Access Trojan #RMM Abuse
Daily CyberSecurity
NetSupport RAT Campaign Abuses ClickFix to Infect Hosts; 3 Threat Clusters Use RMM for Covert Access
eSentire exposed a surge in NetSupport RAT campaigns using the ClickFix social engineering tactic. Three threat clusters leverage a PowerShell loader to bypass AV and gain full remote access via the RMM tool.