Gbhackers iconGbhackersSep 12, 2026

New Phishing Campaign Abuses Windows Mshta.exe to Steal Credentials and Secrets

Fortra's Intelligence and Research Experts (FIRE) said the activity began in June and remains active, with operators regularly recompiling malware samples to […]

New Phishing Campaign Abuses Windows Mshta.exe to Steal Credentials and Secrets

Share this story

Send the public story page.

Useful takeaways from this story.

Fortra's Intelligence and Research Experts (FIRE) said the activity began in June and remains active, with operators regularly recompiling malware samples to […]

A newly identified phishing campaign is abusing the legitimate Windows utility mshta.exe to execute malicious HTML Application (HTA) files, conduct system reconnaissance, and potentially deploy payloads...

Building the complete brief

The page is ready to read now. The fuller skim-friendly version will appear here automatically.

The useful part

Fortra's Intelligence and Research Experts (FIRE) said the activity began in June and remains active, with operators regularly recompiling malware samples to […] A newly identified phishing campaign is abusing the legitimate Windows utility mshta.exe to execute malicious HTML Application (HTA) files, conduct system reconnaissance, and potentially deploy payloads designed to steal credentials and local secrets.

Details worth keeping

A newly identified phishing campaign is abusing the legitimate Windows utility mshta.exe to execute malicious HTML Application (HTA) files, conduct system reconnaissance, and potentially deploy payloads designed to steal credentials and local secrets.

Keep reading in the app

Open the app view to save this story, compare related coverage, and continue from the same source.

Open in app