Signed malware impersonating workplace apps deploys RMM backdoors

Reported 04 Mar 2026 by otx · Severity: medium

Multiple phishing campaigns were identified using workplace meeting lures, PDF attachments, and abuse of legitimate binaries to deliver signed malware. The attacks used digitally signed executables masquerading as legitimate software to install remote monitoring and management (R