Threat Actor Abuses Gophish to Deliver New PowerRAT and DCRAT
The campaign involves modular infection chains requiring the victim's interaction, with the malware being delivered through Maldoc or HTML-based methods. The phishing emails use the Russian language, fake Yandex Disk links, and spoofed VK pages.