Phorpiex Phishing Campaign Uses Weaponized Windows Shortcuts

Phorpiex Phishing Campaign Uses Weaponized Windows Shortcuts

First seen 10 Feb 2026, 22:20 UTC GbhackersCybersecuritynewsCsoonlineCyberpressInfosecurity-Magazine+3 87% similarity 39.7

Article Content

Browse articles
ThreatCluster

A phishing campaign leveraging the Phorpiex malware has been identified, utilizing weaponized Windows shortcut files to deliver Global Group ransomware. The campaign, which began in late 2024 and continues into 2026, employs emails with the subject line 'Your Document' to deceive recipients into opening malicious attachments that initiate a multi-stage infection chain.

ThreatCluster AI How this analysis works

Timeline

2024-12-01
Phorpiex phishing campaign observed using 'Your Document' emails
2025-01-01
Campaign identified as leveraging weaponized Windows shortcut files
2026-02-10
Forcepoint issues advisory on ongoing Phorpiex campaign

Community

Browse all →

Tracked Entities in This Story