
Blind Eagle-Linked Loader Uses GitHub, VBScript, PowerShell and InstallUtil to Deploy AsyncRAT
Researchers have uncovered a Blind Eagle-linked malware operation that uses GitHub repositories, phishing lures, VBScript, PowerShell, and the legitimate Windows InstallUtil utility to deploy AsyncRAT on victim systems. The investigation began with the GitHub account cabeto850128, which was used to host components of a malware loader. The account’s comicsam repository stored an AutoIt interpreter and […]
The post Blind Eagle-Linked Loader Uses GitHub, VBScript, PowerShell and InstallUtil to Deploy AsyncRAT appeared first on Cyber Security News.