Bookmark Article
The threat actor EncryptHub is exploiting a patched vulnerability in Microsoft Windows, specifically within the Microsoft Management Console (MMC) framework (CVE-2025-26633, also known as MSC EvilTwin), to deploy malicious payloads. Trustwave SpiderLabs recently identified a campaign that combines social engineering tactics with this exploit to deliver threats effectively.
Want More Context? 🔎