Remcos RAT Campaign Targets South Korean Users with Trojanized VeraCrypt Installers

Remcos RAT Campaign Targets South Korean Users with Trojanized VeraCrypt Installers

First seen 20 Jan 2026, 02:03 UTC GbhackersCybersecuritynews 83% similarity 42.5

Article Content

Browse articles
ThreatCluster

A malware campaign has been identified that distributes the Remcos RAT disguised as VeraCrypt installers. This attack primarily targets South Korean users, particularly those involved with illegal online gambling, but poses a risk to all users downloading encryption software.

ThreatCluster AI How this analysis works

Community

Browse all →

Tracked Entities in This Story