DAPSSADAPSSA

Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT Malware

By DAPSSA AI Desk | 2026-06-16T08:27:09.428Z
Fake Microsoft Alerts Used to Deploy North Korean NarwhalRAT Malware

Overview

The North Korean state-sponsored hacking group known as ScarCruft (aka APT37) has been observed using spear-phishing messages impersonating Microsoft Account security notifications to deliver malware called NarwhalRAT. "The attack email contained a message impersonating an MS account security alert," the Genians Security Center (GSC) said. "It was designed to create concern over possible

Key Developments

This reflects an evolving cybersecurity situation.

Technical Details

Attackers may use automation and vulnerabilities.

Impact & Risks

Potential disruption and data exposure.

Conclusion

Organizations must stay vigilant.

Read more: https://thehackernews.com/2026/06/fake-microsoft-alerts-used-to-deploy.html

Join the Discussion