. home.aspx



Phishing Campaign Delivers Quasar RAT Payloads via Fake Resumes

August 26, 2019 / Sergiu Gatlan

A new phishing campaign uses fake resume attachments designed to deliver Quasar Remote Administration Tool (RAT) malicious payloads onto the Windows computers of unsuspecting targets. Phishing is used by crooks to trick potential victims using social engineering techniques into handing over sensitive information via fraudulent websites they control or to deliver malicious content via e-mails appearing to be sent by someone they know or by a legitimate organization. While using fake resumes and various other types of documents is a very common trick abused by cybercriminals operating malspam campaigns, the one targeting Windows users with the Quasar Remote Administration Tool (RAT) spotted by Cofense researchers also adds multiple anti-analysis methods to camouflage the infection vectors.