← Back to Feed

Threat Actors Weaponize AI Hype to Deliver AsyncRAT

June 11, 2026 · Fortinet Threat Research · Severity: HIGH

FortiGuard Labs analyzes a multi-stage malware campaign that uses fake AI-themed documents, hidden PowerShell scripts, AutoHotkey loaders, and process injection to deploy AsyncRAT and maintain remote access.

FortiGuard Labs analyzes a multi-stage malware campaign that uses fake AI-themed documents, hidden PowerShell scripts, AutoHotkey loaders, and process injection to deploy AsyncRAT and maintain remote access.

      

Key Takeaways

  • FortiGuard Labs identified a multi-stage malware campaign using fake AI-themed documents to deliver AsyncRAT.
  • The attack chain uses hidden PowerShell scripts, AutoHotkey loaders, and process injection techniques.
  • Threat actors are exploiting AI hype to trick users into installing remote access trojans.
☕ Buy a Coffee