Fake OnlyFans content is luring users into installing malware

Adult-oriented subscription service OnlyFans has been hit with a new malware campaign that sees fake content being used to infect users’ devices with a Remote Access Trojan (RAT). 

Security firm eSentire discovered the operation, which has been ongoing since the start of this year. ZIP files are distributed that contain a VBScript loader that users unwittingly activate when they think they are getting access to premium OnlyFans content.