Hackers Abuse AutoIt to Inject AsyncRAT Into Microsoft-Signed Windows Process
Hackers are using a familiar Windows automation tool to hide AsyncRAT, a remote-access trojan, inside a trusted system process. The campaign starts with a deceptive batch file named “Right-click to open Invoice Details.bat,” which can appear harmless to someone expecting an invoice or shared document. Once opened, the file quietly launches PowerShell, rebuilds hidden code […]
The post Hackers Abuse AutoIt to Inject AsyncRAT Into Microsoft-Signed Windows Process appeared first on Cyber Security News.