ended5월 11일· 1 sources
Obsidian 플러그인이 원격 접근 트로이목마 배포에 악용됨
Why it matters
This campaign highlights a sophisticated shift where collaborative tools like Obsidian are weaponized through malicious plugins to target high-value financial sectors. The use of decentralized Ethereum transactions for Command and Control (C2) infrastructure makes traditional blocking significantly more difficult, signaling a trend toward more resilient and stealthy malware delivery.
1
Sources
+0
24h
—
Growth
133d
Active
ObsidianPHANTOMPULSE RATSocial engineeringBlockchain C2Remote Access TrojanPlugin exploitation