{"id":57651,"date":"2024-11-12T15:01:52","date_gmt":"2024-11-12T15:01:52","guid":{"rendered":"https:\/\/packetstormsecurity.com\/news\/view\/36584\/Remcos-RAT-Now-Exploiting-Microsoft-Excel-Files.html"},"modified":"2024-11-12T15:01:52","modified_gmt":"2024-11-12T15:01:52","slug":"remcos-rat-now-exploiting-microsoft-excel-files","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/","title":{"rendered":"Remcos RAT Now Exploiting Microsoft Excel Files"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/files.cyberriskalliance.com\/wp-content\/uploads\/2024\/11\/Excel-Spreadsheet.jpg\" class=\"ff-og-image-inserted\"><\/div>\n<p>A new phishing campaign that exploits a high-severity bug from 2017 has been discovered in the wild spreading a new variant of the <a href=\"https:\/\/www.scworld.com\/brief\/remcos-rat-deployed-via-idat-loader\">Remcos<\/a> remote access trojan (RAT), which was among the Top Ten malware strains of 2021.<\/p>\n<p>In a <a href=\"https:\/\/www.fortinet.com\/blog\/threat-research\/new-campaign-uses-remcos-rat-to-exploit-victims\">Nov. 8 blog post<\/a>, researchers from FortiGuard Labs said that the new RAT gets initiated by a phishing email that contains a malicious Excel document.<\/p>\n<p>Attackers then use the new RAT to leverage the old bug \u2013 <a href=\"https:\/\/nvd.nist.gov\/vuln\/detail\/cve-2017-0199\">CVE-2017-0199<\/a> \u2013 which exploits how Microsoft Office and WordPad parse specially-crafted files. Once the victim opens the attached Excel file, it lets attackers gain backdoor access to infected systems and then collect a variety of sensitive information.<\/p>\n<p>\u201cCVE-2017-0199 is exploited once the Excel file is opened on the victim\u2019s device,\u201d wrote the FortiGuard researchers. \u201cIt then downloads an HTA file and executes it on the device. Multiple script languages are leveraged to download an EXE file (dllhost.exe), which then starts the 32-bit PowerShell process to load the malicious code from extracted files and execute it in the <a href=\"https:\/\/www.scworld.com\/news\/lummac2-infostealer-uses-obfuscated-scripts-via-powershell-to-target-endpoints\">PowerShell<\/a> process.\u201d<\/p>\n<p>Jason Soroko, senior fellow at Sectigo, explained that using an older vulnerability in a new campaign highlights that many systems remain unpatched. Soroko said the attackers are exploiting delayed patch management in organizations, exposing them to risks from known vulnerabilities.<\/p>\n<p>\u201cExploit kits and tutorials for CVE-2017-0199 are readily available on underground forums, lowering the barrier to entry,\u201d said Soroko.&nbsp;\u201cSince the attack relies on convincing users to open documents, attackers can exploit human vulnerabilities, which is often easier than bypassing technical safeguards.\u201d<\/p>\n<p>Darren Guccione, co-founder and CEO at Keeper Security, said in this campaign attackers use convincing purchase order emails to lure recipients into opening a malicious Excel attachment. Once opened, the file exploits this older remote code execution flaw, triggering malicious scripts that eventually launch Remcos RAT. With its use of anti-detection techniques, the malware can evade standard antivirus tools, making it difficult to stop.<\/p>\n<p>\u201cPreventing these attacks requires a combination of technical defenses and employee awareness,\u201d said Guccione. \u201cOrganizations should ensure Office applications are regularly updated, enable email filtering and provide training to help employees spot sophisticated phishing attempts. Recognizing red flags, such as unusual senders, urgent requests and suspicious attachments, can help reduce human error. Regular training and robust security measures empower employees to act as the first line of defense.\u201d<\/p>\n<p>Tyler Hudak, director of incident response at Inversion6, pointed out that this Excel exploit was released in 2017 and does not affect Office programs after Microsoft Office 2016 and operating systems after Windows Vista and Windows Server 2012. Hudak said if the organization has a robust patching program or has since updated to a newer version of Office (including Microsoft365) or Windows, then this exploit will not affect them. However, if they have not, then this exploit could lead to compromised systems within an organization.<\/p>\n<p>Hudak identified several options that can assist organizations in preventing similar exploits in the future:<\/p>\n<div>\n<ul>\n<li><em>Ensure<\/em> that the organization has a program that deploys security patches to both operating systems and programs (like Office) in a timely manner.<\/li>\n<li><em>Set-up<\/em> email security software and systems that examine and block incoming attachments for suspicious or malicious code.<\/li>\n<li><em>Monitor <\/em>activity on systems and networks. This attack works by exploiting the vulnerability to download an HTA file, which then executes additional malicious code. Organizations should monitor for Excel accessing the network and downloading HTA files, or Excel executing additional programs, and respond appropriately.<\/li>\n<li><em>Limit<\/em> use of older systems. Many industries, such as manufacturing and healthcare, have difficulty in upgrading software and may have vulnerable systems within their environment. These systems should be segmented from other networks in an organization and their use restricted to prevent Internet\/email access from them.<\/li>\n<\/ul>\n<\/div>\n<p>READ MORE <a href=\"https:\/\/packetstormsecurity.com\/news\/view\/36584\/Remcos-RAT-Now-Exploiting-Microsoft-Excel-Files.html\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":57652,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[277],"tags":[4764],"class_list":["post-57651","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity-blogs","tag-headlinehackermalwaremicrosoftbackdoor"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.8 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Remcos RAT Now Exploiting Microsoft Excel Files 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Remcos RAT Now Exploiting Microsoft Excel Files 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2024-11-12T15:01:52+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/files.cyberriskalliance.com\/wp-content\/uploads\/2024\/11\/Excel-Spreadsheet.jpg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/remcos-rat-now-exploiting-microsoft-excel-files\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/remcos-rat-now-exploiting-microsoft-excel-files\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Remcos RAT Now Exploiting Microsoft Excel Files\",\"datePublished\":\"2024-11-12T15:01:52+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/remcos-rat-now-exploiting-microsoft-excel-files\\\/\"},\"wordCount\":629,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/remcos-rat-now-exploiting-microsoft-excel-files\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2024\\\/11\\\/remcos-rat-now-exploiting-microsoft-excel-files.jpg\",\"keywords\":[\"headline,hacker,malware,microsoft,backdoor\"],\"articleSection\":[\"CyberSecurity Blogs\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/remcos-rat-now-exploiting-microsoft-excel-files\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/remcos-rat-now-exploiting-microsoft-excel-files\\\/\",\"name\":\"Remcos RAT Now Exploiting Microsoft Excel Files 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/remcos-rat-now-exploiting-microsoft-excel-files\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/remcos-rat-now-exploiting-microsoft-excel-files\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2024\\\/11\\\/remcos-rat-now-exploiting-microsoft-excel-files.jpg\",\"datePublished\":\"2024-11-12T15:01:52+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/remcos-rat-now-exploiting-microsoft-excel-files\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/remcos-rat-now-exploiting-microsoft-excel-files\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/remcos-rat-now-exploiting-microsoft-excel-files\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2024\\\/11\\\/remcos-rat-now-exploiting-microsoft-excel-files.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2024\\\/11\\\/remcos-rat-now-exploiting-microsoft-excel-files.jpg\",\"width\":900,\"height\":599},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/remcos-rat-now-exploiting-microsoft-excel-files\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"headline,hacker,malware,microsoft,backdoor\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/headlinehackermalwaremicrosoftbackdoor\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Remcos RAT Now Exploiting Microsoft Excel Files\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Remcos RAT Now Exploiting Microsoft Excel Files 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/","og_locale":"en_US","og_type":"article","og_title":"Remcos RAT Now Exploiting Microsoft Excel Files 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2024-11-12T15:01:52+00:00","og_image":[{"url":"https:\/\/files.cyberriskalliance.com\/wp-content\/uploads\/2024\/11\/Excel-Spreadsheet.jpg","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Remcos RAT Now Exploiting Microsoft Excel Files","datePublished":"2024-11-12T15:01:52+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/"},"wordCount":629,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2024\/11\/remcos-rat-now-exploiting-microsoft-excel-files.jpg","keywords":["headline,hacker,malware,microsoft,backdoor"],"articleSection":["CyberSecurity Blogs"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/","url":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/","name":"Remcos RAT Now Exploiting Microsoft Excel Files 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2024\/11\/remcos-rat-now-exploiting-microsoft-excel-files.jpg","datePublished":"2024-11-12T15:01:52+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2024\/11\/remcos-rat-now-exploiting-microsoft-excel-files.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2024\/11\/remcos-rat-now-exploiting-microsoft-excel-files.jpg","width":900,"height":599},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/remcos-rat-now-exploiting-microsoft-excel-files\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"headline,hacker,malware,microsoft,backdoor","item":"https:\/\/www.threatshub.org\/blog\/tag\/headlinehackermalwaremicrosoftbackdoor\/"},{"@type":"ListItem","position":3,"name":"Remcos RAT Now Exploiting Microsoft Excel Files"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/57651","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=57651"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/57651\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/57652"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=57651"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=57651"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=57651"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}