CuraSec

Learn active

Russian national indicted for phishing 80,000 freelancers with TVRAT/DarkVNC

2026-09-02 15:05 UTC · BleepingComputer · read the source ↗ #phishing#malware#indictment
  • Engineer — Skip
  • SOC/IR — Learn: TVRAT and DarkVNC are remote access trojans worth reviewing in your detection library; no new IOCs or active campaign signals in this item, but the freelancer-targeting lure pattern is worth noting for awareness.
  • Leader — Learn: A useful data point on scale of freelancer-targeting campaigns (80,000 victims) for risk discussions around contractor onboarding and device trust policies.
This entry was curated and judged by AI (Claude) with automated enrichment (CISA KEV / EPSS / public PoC). Verify against the original source before acting. Found a bad verdict? Report it — confirmed errors go to the corrections log.