JS.MonoGlyphRAT is a malware family tracked across 1 threat cluster and 2 intelligence report mentions on ThreatCluster. First observed June 3, 2026; most recent activity June 3, 2026.
Hackers are deploying a new JavaScript backdoor, JS.MonoGlyphRAT, into US enterprises using fake purchase orders and sales documents. The malware is disguised as .js attachments that appear to be legitimate business…