
Hackers Use Fake Claude Desktop and Bing Ads to Deliver SectopRAT to 29 Organizations
Affected endpoints showed unusual Defender exclusions, new persistence mechanisms, and outbound connections aligned with remote access and credential theft activity, leading analysts to treat incidents as full RA T-level compromises rather than benign adware. Huntress tracks this malvertising-driven operation as “FakeAgent,” highlighting the abuse of Claude’s own artifact hosting and the use of a fake […]
The post Hackers Use Fake Claude Desktop and Bing Ads to Deliver SectopRAT to 29 Organizations appeared first on Cyber Security News.