[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fUVnV4XdI8w6H7dLeEMViBp9x-Vio1Ax4PG3cUrKQ3o4":3},{"article":4,"iocs":45},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":11,"published_at":13,"ingested_at":14,"relevance_score":15,"entities":16,"category_id":30,"category":31,"article_tags":34},"6ae862fc-2acf-4450-b91a-5cb535a08dde","Fake Bank of America Phishing Emails Found Delivering Disguised ScreenConnect RAT via UAC Bypass","fake-bank-of-america-phishing-emails-found-delivering-disguised-screenconnect-ra-53d147","Researchers at Huntress have identified an active phishing campaign impersonating Bank of America that culminates in the covert installation of a remote monitoring and management (RMM) tool, giving attackers persistent, hard-to-detect access to victims’ Windows machines. The campaign was flagged after a message landed in one of Huntress’s spamtrap accounts on 28 July, sent from […] The post Fake Bank of America Phishing Emails Found Delivering Disguised ScreenConnect RAT via UAC Bypass appeared first on IT Security Guru.","Huntress researchers discovered an active phishing campaign impersonating Bank of America that delivers a disguised ScreenConnect remote access trojan (RAT) to Windows systems. The malware leverages a UAC bypass technique to gain persistent, covert access to compromised machines. The campaign was identified after a malicious email was captured in Huntress's spamtrap on July 28.","Fake Bank of America phishing emails deliver ScreenConnect RAT via UAC bypass to Windows machines.",null,"https:\u002F\u002Fwww.itsecurityguru.org\u002F2026\u002F08\u002F04\u002Ffake-bank-of-america-phishing-emails-found-delivering-disguised-screenconnect-rat-via-uac-bypass\u002F?utm_source=rss&utm_medium=rss&utm_campaign=fake-bank-of-america-phishing-emails-found-delivering-disguised-screenconnect-rat-via-uac-bypass","2026-08-04T13:21:28+00:00","2026-08-04T14:00:15.459857+00:00",8,[17,20,22,25,28],{"name":18,"type":19},"Bank of America","vendor",{"name":21,"type":19},"Huntress",{"name":23,"type":24},"ScreenConnect","product",{"name":26,"type":27},"UAC bypass","technology",{"name":29,"type":27},"Windows","89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5",{"id":30,"icon":11,"name":32,"slug":33},"Malware","malware",[35,40],{"category":36},{"id":37,"icon":11,"name":38,"slug":39},"2c8f44d4-b56e-47cf-9677-04f22c9ee78d","Identity & Access","identity-access",{"category":41},{"id":42,"icon":11,"name":43,"slug":44},"c5eccf7c-abbc-4bd3-bbed-e6da5cba8e73","Incident Response","incident-response",[46],{"type":33,"value":47,"context":48},"ScreenConnect RAT","Remote access trojan disguised and delivered via phishing, used for persistent machine access"]