RedCurl Cybercrime Group Abuses Windows PCA Tool for Corporate Espionage


The Russian-speaking cybercrime group called RedCurl is leveraging a legitimate Microsoft Windows component called the Program Compatibility Assistant (PCA) to execute malicious commands.

“The Program Compatibility Assistant Service (pcalua.exe) is a Windows service designed to identify and address compatibility issues with older programs,” Trend Micro said in an analysis







2024-03-14 10:23:00


0 Comments

Leave a Reply

Avatar placeholder

Your email address will not be published. Required fields are marked *