PhantomCore is a backdoor and remote access trojan (RAT) delivered through poisoned TrueConf client installers. It is part of an attack chain exploiting TrueConf server vulnerabilities. PhantomCore provides attackers with remote access and control over infected systems, often used in targeted attacks against Russian organizations.