Skip to content

Hackers Abuse LNK Files, PowerShell, and Python Loader to Deploy NarwhalRAT

Cybersecuritynews •Tushar Subhra Dutta • June 15, 2026

A sophisticated malware campaign is quietly targeting Korean users through a well-crafted chain of deception. Threat actors are using innocent-looking shortcut files, built-in Windows tools, and a compiled Python payload to plant a remote access trojan called NarwhalRAT on victim machines. The attack stands out for how cleverly it blends into normal system activity, making […]

Extracted Entities

Attack Types (1)

Malware (1)

Platforms (1)