A targeted attack against a U.S.-based certified public accounting firm was discovered in May 2025 by cybersecurity experts, according to a recent study described in eSentire’s Threat Response Unit (TRU) Positives report. The campaign leveraged a novel crypter named >>Ghost Crypt<< to deliver PureRAT, a Remote Access Trojan (RAT) that has surged in prevalence throughout [...] The post Cybercriminals Use Zoho WorkDrive Folders to Spread Obfuscated PureRAT Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform. First seen on gbhackers.com Jump to article: gbhackers.com/cybercriminals-use-zoho-workdrive-folders/
![]()

