A phishing scam aiming to push network-compromising backdoor claims to have inside information on President Trump’s health after he recently was confirmed of having COVID-19.
Due to the up-and-coming polarising US election, President Trump’s health has become a key interest for people from either end of the political spectrum. The subject of the emails included phrases such as ‘Recent materials pertaining to the president’s illness’ and ‘Newest information about the president’s condition’. They also required that recipients of the emails must download a link in order to access the information regarding Trump’s health status. Upon clicking the link a BazarLoader executable was downloaded and users were infected.