Operation PhantomBlu Deploys NetSupport RAT via OLE Template

Threat Advisories

Operation PhantomBlu Deploys NetSupport RAT via OLE Template

Summary:

Under the guise of Operation PhantomBlu, a new phishing campaign is aimed at American companies with the goal of deploying the remote access trojan NetSupport RAT. By utilising OLE template manipulation, the PhantomBlu operation presents a sophisticated exploitation technique. This technique uses Microsoft Office document templates to run malicious code covertly and avoid detection.

Threat Level – Red | Attack Report

For a detailed threat advisory, download the pdf file here

To receive real-time threat advisories, please follow HiveForce Labs on LinkedIn.