As cited
Copy frozen at (site build).
threat intel
Phishing Campaign Abuses eCards to Deploy RMM Tools
No summary had been written when this copy was frozen.
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
Phishing Campaign Abuses eCards to Deploy RMM Tools
A phishing campaign spanning six months has targeted users with seasonal eCard lures to deploy remote management and monitoring tools on victim systems. The attackers used legitimate remote management software as a follow-on payload, enabling persistent access after the initial compromise.
Why it matters: Organizations and end users face credential theft and system compromise through trusted seasonal greeting vectors; security teams should block eCard domains, educate users on unsolicited greeting links, and monitor for unexpected remote management tool installations.
- Source published
- First seen by Cybersecurity Tracker