
- Attackers weaponized a .jpeg file to deliver PowerShell payloads, trojanized ScreenConnect, and establish persistence
- The malware enables credential theft, encrypted C2 comms, and surveillance features
- Cyfirma warns the campaign reflects a mature intrusion framework
Be careful when downloading files from the internet, as even innocent .jpeg files can actually contain malware, experts have warned.