As cited
Copy frozen at (site build).
threat intel
Attackers Combo Up Evasion Tactics for BEC Phishing
A phishing campaign called 'The TFF Trap' employs fileless malware techniques and evasion-focused loaders to deliver multiple remote access trojans (RATs) and information stealers such as Agent Tesla, Remcos, XWorm, and Best Private Logger. The approach combines low-detection evasion methods with commodity malware to increase the likelihood of successful compromise.
Why it matters: Organizations receiving business email compromise (BEC) and phishing attacks face heightened risk from stealers and RATs that evade endpoint detection tools; security teams should strengthen email filtering, user awareness training, and post-breach hunting for these specific malware families.
- Source published
- First seen by Cybersecurity Tracker