At least two threat actors have recently been observed distributing malicious Windows shortcut files designed to infect victims with malware.
Late last week, cybersecurity researchers from Varonis reported seeing the dreaded Emotet threat actor, as well as the lesser-known Golden Chickens group (AKA Venom Spider), distributing .ZIP archives via email, and in those archives, .LNK files.
Using Windows shortcut files to deploy malware or ransomware(opens in new tab) on the target endpoint(opens in new tab) is not exactly novel, but these threat actors have given the idea a brand new spin.