Skip to content

New Phantom Stealer Campaign Hits Windows Machines Through ISO Mounting

Cybersecuritynews •Dhivya • December 13, 2025

Researchers have uncovered a sophisticated phishing campaign originating in Russia that deploys the Phantom information-stealing malware via malicious ISO files. The attack, dubbed “Operation MoneyMount-ISO,” targets finance and accounting departments explicitly using fake payment confirmation emails to trick victims into executing the payload. The campaign primarily focuses on finance, accounting, treasury, and payment departments in […]

Extracted Entities

Attack Types (1)

Countries (1)

Platforms (2)