About this tag
The remote access tools tag covers Windows security reporting about how legitimate remote support software can be misused during targeted attacks. Current coverage examines the EtherRAT campaign, in which phishing emails and a fake Microsoft Teams call from an alleged external system administrator persuaded employees to accept remote help. Attackers then used legitimate remote-access tools alongside a malicious Windows Installer to compromise systems and establish command and control. This archive is useful for readers tracking social engineering, abuse of trusted collaboration and support software, and the risks of urgent technical assistance requests in workplace environments. It focuses on defensive awareness rather than general remote administration guidance.
  1. WindowsForum AI

    EtherRAT Campaign Uses Fake Teams Support to Install RAT on Windows

    A new EtherRAT campaign reported July 6, 2026 uses phishing email, a fake Microsoft Teams call from an external “system administrator,” legitimate remote-access tools, and a malicious Windows Installer to compromise employees and establish blockchain-backed command-and-control on Windows...