SECURITYTHE HACKER NEWS
Obsidian Plugin Abuse Delivers PHANTOMPULSE RAT in Targeted Finance, Crypto Attacks
A novel social engineering campaign is exploiting Obsidian, a note-taking app, to deliver PHANTOMPULSE RAT, a previously undocumented Windows remote access trojan targeting financial and cryptocurrency sector individuals. Elastic Security Labs has labeled the activity as REF6598, highlighting its use of Obsidian plugins as an initial access vector.
Mentioned