Operation DupeHike — Campaign Analysis & Threat Activity

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
December 4, 2025
Last Seen
January 25, 2026

Operation DupeHike is a threat campaign tracked across 2 threat clusters and 3 intelligence report mentions on ThreatCluster. First observed December 4, 2025; most recent activity January 25, 2026.

Overview

Operation DupeHike is a threat campaign that leverages the DuperRunner malware family to compromise organizations by targeting employees with weaponized documents. It highlights phishing-based intrusion techniques, where malicious documents are used to deliver malware and gain initial access, marking it as a notable active campaign in 2025.

Related Threat Clusters

Recent Intelligence Reports

  • Sophisticated Multi-Stage Phishing Attack Exploits Microsoft Windows in Russian ... — Rescana · January 25, 2026
  • Operation DupeHike: DuperRunner Malware Attack on Employees — Gbhackers · December 4, 2025
  • Operation DupeHike Attacking Employees Using Weaponized Documents DUPERUNNER Malware — Cybersecuritynews · December 4, 2025

CVSS v3.1 Breakdown