Skip to content
Judicial Targets Hit by COVERT RAT via Court Docs and GitHub Payloads

Judicial Targets Hit by COVERT RAT via Court Docs and GitHub Payloads

Gbhackers •Mayura Kathir • March 18, 2026

Attackers are abusing fake court documents and GitHub‑hosted payloads in a focused spear‑phishing campaign that deploys a stealthy Rust‑based COVERT RAT against Argentina’s judicial sector. This operation chains Windows LNK shortcuts, BAT loaders, and PowerShell to quietly fetch and execute a masqueraded payload, msedge_proxy.exe, from GitHub infrastructure. The operation, tracked as “Operation Covert Access,” uses […]

Extracted Entities

Attack Types (1)

Countries (1)

Malware (1)

Platforms (2)

Tools (1)