Bloody Wolf Hackers Deploy NetSupport RAT via Fake Government PDFs
First seen 1 Dec 2025, 18:41 UTC
•

•82% similarity
•42
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
The Bloody Wolf hacking group has been identified using fake government emails and weaponized PDFs to deploy the NetSupport Remote Access Trojan (RAT). This advanced persistent threat (APT) targets various organizations by masquerading as legitimate government communications. The malicious PDFs are designed to compromise systems and facilitate unauthorized access.
ThreatCluster AI