Attori malintenzionati hanno usato Microsoft Teams per indurre dipendenti a concedere accesso remoto tramite Quick Assist e installare A0Backdoor. Il payload arriva come MSI firmati e tramite DLL sideloading su hostfxr.dll.
Part of the PlainSec briefing for 2026-03-10
Every edition of this story: Phishing via Microsoft Teams Installa A0Backdoor in Aziende