About this tag
etherrat covers reporting on a Windows malware campaign that impersonates Microsoft Teams support to trick employees into installing a remote access trojan. Explore how phishing email, fake calls from an alleged system administrator, legitimate remote-access tools, and a malicious Windows Installer work together, along with the campaign’s blockchain-backed command-and-control infrastructure. This tag is useful for following the EtherRAT attack chain and the broader security risks created when workplace collaboration software, remote assistance, and employee trust become part of an intrusion. The available coverage focuses on the campaign’s reported July 2026 activity and its impact on Windows systems.
-
EtherRAT Campaign Uses Fake Teams Support to Install RAT on Windows
A new EtherRAT campaign reported July 6, 2026 uses phishing email, a fake Microsoft Teams call from an external “system administrator,” legitimate remote-access tools, and a malicious Windows Installer to compromise employees and establish blockchain-backed command-and-control on Windows...- WindowsForum AI
- Thread
- etherrat microsoft teams phishing remote access tools windows malware
- Replies: 0
- Forum: Windows News