LinkedIn Phishing Scam Alert: How Cybercriminals Use Fake InMail to Deliver ConnectWise RAT!
Cofense has uncovered a LinkedIn phishing scam using fake InMail emails to deliver ConnectWise RAT. The scam creates urgency with a false sales query, prompting quick response. Despite outdated designs and failed authentication checks, it bypasses security measures, highlighting the need for vigilance against LinkedIn phishing attacks.

Hot Take:
Who knew that LinkedIn would become the new catfish capital of the world? You think you’re getting a business proposal, but surprise! It’s actually a RAT trying to crash your computer party. These cybercriminals have taken networking to a whole new level—one you’d rather avoid at all costs. Next time you see a LinkedIn InMail, maybe think twice before clicking, unless you’re into downloading uninvited guests!
Key Points:
- Cybercriminals are using fake LinkedIn InMail messages to distribute ConnectWise RAT.
- The phishing emails use outdated LinkedIn templates to seem legitimate.
- Emails bypass security checks despite failing SPF and DKIM authentication.
- Recipients are tricked into downloading malware through buttons, not direct prompts.
- Campaign has been active since May 2024 and leverages social engineering tactics.
Already a member? Log in here