PureHVNC Malware Campaign Exploits Google Forms for Job Scams

PureHVNC Malware Campaign Exploits Google Forms for Job Scams

First seen 24 Mar 2026, 14:46 UTC GbhackersCybersecuritynews 92% similarity 48.9

Article Content

Browse articles
ThreatCluster

A new malware campaign is utilizing Google Forms to distribute the PureHVNC Remote Access Trojan (RAT). Attackers are employing business-themed lures, such as fake job interviews and financial documents, to deceive victims into downloading the malware. This shift from traditional phishing methods represents a significant evolution in attack strategies. The campaign targets individuals seeking employment or business opportunities, potentially affecting a wide range of users. The use of trusted platforms like Google Forms increases the likelihood of successful infections. As of now, specific numbers of affected users or organizations have not been disclosed. Security professionals are advised to remain vigilant against such tactics. The current status of the campaign is active, with ongoing reports of its spread.

Key Points: • Attackers are using Google Forms to distribute PureHVNC RAT through deceptive job-related lures. • The campaign marks a significant shift from traditional phishing methods to trusted platforms. • No specific numbers of affected users have been reported, but the scope is potentially widespread.

ThreatCluster AI How this analysis works

Timeline

2026-03-24
Gbhackers and Cybersecuritynews report on the PureHVNC malware campaign.

Community

Browse all →

Tracked Entities in This Story