Fake Tech Support Delivers Havoc Command & Control

Adversaries leverage fake tech support to deploy a modified Havoc C2 agent, employing DLL sideloading, syscall evasion (HellsGate), and RMM tools for persistent access.

security

Sources