Attackers are abusing the legitimate Faronics Deploy platform to enrol victim computers in malicious deployments and install ScreenConnect remote access software. The phishing activity ran from July 21 to August 20 and reached more than 457 endpoints. Attackers used messages disguised as invoices, tax documents and other business files. Phishing lures use a legitimate installer…