Back to IntelRead Original Source
Intel Node
Obsidian Plugin Abuse Delivers PHANTOMPULSE RAT in Targeted Finance, Crypto Attacks
lowmalware2026-04-16T11:02:00+00:00source excerpt
malwarewindows
Source excerpt · The upstream feed supplied only part of this article.Read the original source →
A "novel" social engineering campaign has been observed abusing Obsidian, a cross-platform note-taking application, as an initial access vector to distribute a previously undocumented Windows remote access trojan called PHANTOMPULSE in attacks targeting individuals in the financial and cryptocurrency sectors.