
Stealth RAT uses a PowerShell loader for fileless attacks
In the observed attacks, threat actors deployed a PowerShell-based shellcode loader that executes malicious code directly in system memory, bypassing traditional file-based detection. The infection chain starts with a disguised LNK shortcut phished to a …