Hackers Abuse AutoIt to Inject AsyncRAT Into Microsoft-Signed Windows Process

Hackers are using a familiar Windows automation tool to hide AsyncRAT, a remote-access trojan, inside a trusted system process. The campaign starts with a deceptive batch file named “Right-click to open Invoice Details.bat,” which can appear harmless to someone expecting an invoice or shared document. Once opened, the file quietly launches PowerShell, rebuilds hidden code […]

This article has been indexed from Cyber Security News

Read the original article: