A Remote Administration Tool (RAT) is delivered via an unusual route: a benign-looking Microsoft Word document with an ulterior motive. In this case, the unsuspecting user opening the decoy Word document will trigger an automatic download of a malicious RTF file that deploys an exploit (CVE-2017-8759), which ends up distributing the final malware payload. Victims will be none-the-wiser as the infection process happens in the background, while their Word document finally loads what looks like legitimate content.”]

