
Agent Tesla BEC Campaign Uses Emoji-Obfuscated JScript to Steal Credentials From 40+ Apps
A business email compromise (BEC) campaign targeting finance departments is delivering Agent Tesla v4 through a payment-themed phishing attachment. The malware uses Unicode emoji characters to hide malicious JScript code, then launches the infostealer through a fileless execution chain designed to evade traditional security controls. The campaign impersonates Metropolitan Bank and Trust Company, a legitimate […]
The post Agent Tesla BEC Campaign Uses Emoji-Obfuscated JScript to Steal Credentials From 40+ Apps appeared first on Cyber Security News.