Back to Intel

Intel Node

Exposed Server Reveals AI-Assisted Phishing Toolkit Behind WebDAV Malware Campaign

lowmalware2026-07-20T17:29:50+00:00source excerpt
malwaretradecraftwindowsemail

Source excerpt · The upstream feed supplied only part of this article.Read the original source →

A malware operator left its delivery server wide open, and Rapid7 pulled down the whole toolkit: 1,048 files spanning lure templates, filename-spoofing tests, execution experiments, droppers, builder notes, and two campaign chains. One was already live against Windows users in Mexico, delivering an infostealer through a fake government ID-lookup site over WebDAV.

Read Original Source