Threat actors in April 2026 used Microsoft Teams voice phishing, Windows Quick Assist, a compromised SharePoint tenant, and cloud-hosted instructions to deliver Nimbus RAT, a Java-based remote access trojan that communicates through Google Drive and Google Sheets on infected Windows endpoints...