
Hackers Patch termsrv.dll to Maintain Multiple RDP Sessions On Victim Hosts
The Cloud Atlas advanced persistent threat (APT) group has escalated its cyberespionage campaigns throughout 2025 and early 2026, primarily targeting government and diplomatic entities in Russia and Belarus. In a newly uncovered wave of attacks, researchers have observed the threat actors deploying sophisticated evasion techniques, including patching the Windows termsrv.dll file to maintain hidden, concurrent […]
The post Hackers Patch termsrv.dll to Maintain Multiple RDP Sessions On Victim Hosts appeared first on Cyber Security News.