HackerFeeds

CyberSecurity News

WhatsApp VBScript Campaign Uses Fake Documents to Install ManageEngine RMM Tool

The Hacker News
· June 23, 2026

AI summary

A campaign is using WhatsApp to spread malicious Visual Basic Script files, which install legitimate Remote Monitoring and Management software. The files are being distributed through direct messages on WhatsApp Desktop and WhatsApp Web. The campaign is targeting users in several countries, including Malaysia, Brazil, India, Mexico, Singapore, the U.K., Spain, Taiwan, and Australia. Kaspersky has identified this active campaign, which uses fake documents to install the ManageEngine RMM tool. The use of legitimate software in this campaign is a notable aspect of the attack. The campaign's scope is international, affecting users across multiple regions.

Countries in focus

Read the full article at The Hacker Newsthehackernews.com/2026/06/whatsapp-vbscript-campaign-uses-fake.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.