DarkMe RAT trades zero-days for plain phishing emails

Sep 23, 2026 - 15:45
DarkMe RAT trades zero-days for plain phishing emails

DarkMe, a remote access trojan and info-stealer that has previously been associated with a threat group that targeted financial market traders and cryptocurrency users, has been spotted again. This time around, its distribution has been simplified: instead of leveraging zero-day exploits, attackers are betting on a simple email to convince targets to run it on their machine: The malicious email pointing to the first stage downloader for DarkMe (Source: Huntress) The link supposedly points to … More

The post DarkMe RAT trades zero-days for plain phishing emails appeared first on Help Net Security.