Revoked Certificates Still Trusted: 2.4M Windows Systems Compromised — Microsoft Defender Fails Trust Chain — Enterprise Security Crisis
TL;DR
* Microsoft Defender identifies phishing campaign using ScreenConnect, Tactical RMM, and Mesh Agent via signed MSI packages in February 2026
* Phishing campaign impersonates Zoom and Google Meet waiting rooms to deploy Windows remote monitoring malware
* Trail of Bits releases mquire, a Linux memory forensics tool that analyzes dumps without