Rogue ScreenConnect Clients Spread Four-Stage VBScript Chain to Newly Connected Hosts

Cybersecurity researchers have disclosed details of worm-like activity that abuses ConnectWise ScreenConnect to distribute a malicious Visual Basic Script (VBScript) payload to newly connected systems.

According to Huntress, three unrelated incidents have been found to use diverse initial access methods, namely a Quick Assist tech-support scam, a phishing-delivered MSI installer, and a fake

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Monetization Gateway: Charge for any resource behind Cloudflare via x402

Monetization Gateway: Charge for any resource behind Cloudflare via x402 Source: Hacker News

Attack Update: Top 5 Attack-IPs auf doode.info – 03.09.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 136.108.98.202 — 587 requests (recent log) 89.167.35.212 — 398 requests (recent log) 103.253.27.108 — 269 requests (recent

Attack Update: Top 5 Attack-IPs auf doode.info – 19.07.2026

Watchtower Attack Update. Hier die aktuellen Top 5 Attack-IPs, die auf doode.info klopfen. 185.93.89.147 — 304 requests (recent log) 89.167.35.212 — 254 requests (recent log) 216.244.66.232 — 66 requests (recent