top of page
Silver Fox Uses Fake Microsoft Teams Installer to Spread ValleyRAT Malware in China
4 december 2025 om 17:25:00
thehackernews.com
The Silver Fox threat actor is conducting a false flag operation to mimic Russian threat groups while targeting organizations in China. The campaign uses SEO poisoning and fake Microsoft Teams installers as lures to trick users into downloading malicious setup files. The attack results in the deployment of ValleyRAT (also known as Winos 4.0) malware. This represents an active malware distribution campaign with sophisticated social engineering tactics including impersonation of legitimate software and geopolitical false flag operations.
Related links:
Related CVE's:
No CVEs found in this article
Related threat actors:
Silver Fox
Affected products:
Microsoft Teams
IOC's:
No IOCs found in this article
bottom of page
