Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Top Cooking Websites For Food Bloggers

    Katy Perry Goes To Space!

    Mr. Meowski’s Bakery To Re-Locate In St. Charles MO

    Facebook X (Twitter) Instagram
    Tech Empire Solutions
    • Home
    • Cloud
    • Cyber Security
    • Technology
    • Business Solution
    • Tech Gadgets
    Tech Empire Solutions
    Home » New JinxLoader targets users with Formbook and XLoader malware
    Cyber Security

    New JinxLoader targets users with Formbook and XLoader malware

    techempireBy techempireNo Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email

    ReportJanuary 1, 2024Editorial DepartmentMalware/Darknet

    A new Go-based malware loader called jinx loader Threat actors are using it to deliver next-stage payloads such as Formbook and its successor XLoader.

    The disclosure comes from cybersecurity firms Palo Alto Networks Unit 42 and Symantec, both of which highlighted a multi-step attack sequence that led to the deployment of JinxLoader via a phishing attack.

    “The malware pays homage to the League of Legends character Jinx, showing the character on its advertising posters. [command-and-control] Login panel,” Symantec said. “JinxLoader’s primary function is simple – to load malware. “

    Unit 42 disclose In late November 2023, the malware service was first advertised on hacker forums[.]Net payment starting April 30, 2023, $60 per month, $120 per year, or $200 lifetime fee.

    Internet security

    The attacks began with a phishing email impersonating the Abu Dhabi National Oil Company (ADNOC), urging recipients to open a password-protected RAR archive attachment, which upon opening dropped the JinxLoader executable, which then acted as a Formbook Or XLoader’s gateway.

    The development comes as ESET revealed a surge in infections, with the company releasing another new family of malware called Rugmi to deliver a variety of information-stealing programs.

    At the same time, there was a surge in activity distributing DarkGate and PikaBot, and a threat actor known as TA544 (also known as Narwal Spider) exploited a new variant of the loader malware called IDAT Loader to deploy Remcos RAT or SystemBC malware.

    Additionally, the threat actors behind Meduza Stealer have released an updated version of the malware (version 2.2) on the dark web, extending support for browser-based cryptocurrency wallets and improving the credit card (CC) grabber.

    Internet security

    Researchers have discovered a new stealer family called Vortex Stealer that is capable of stealing browser data, Discord tokens, Telegram conversations, system information and files smaller than 2 MB, showing that stealer malware is still a cybercrime The lucrative market for molecules is in size.

    “The stolen information will be archived and uploaded to Gofile or Anonfiles; the malware will also use a webhook to post it to the author’s Discord,” Symantec said. “It can also be posted to Telegram via Telegram bots. “

    Did you find this article interesting?follow us Twitter  and LinkedIn to read more exclusive content from us.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    techempire
    • Website

    Related Posts

    Ongoing campaign bombards businesses with spam emails and phone calls

    6 common mistakes organizations make when deploying advanced authentication

    New Chrome zero-day vulnerability CVE-2024-4761 is being actively exploited

    Microsoft patches 61 flaws, including two actively exploited zero-day vulnerabilities

    Dutch court sentences Tornado Cash co-founder to 5 years in prison for money laundering

    Migrate from VMware vSphere to Microsoft Azure

    Leave A Reply Cancel Reply

    Top Reviews
    Editors Picks

    Top Cooking Websites For Food Bloggers

    Katy Perry Goes To Space!

    Mr. Meowski’s Bakery To Re-Locate In St. Charles MO

    Pokémon Trading Card Website Making 100k!

    Legal Pages
    • About Us
    • Disclaimer
    • DMCA
    • Privacy Policy
    Our Picks

    Edufox

    Emerging Academic Education Platforms – Sponsored By Edufox

    GTA 6 Release Date

    Top Reviews

    Type above and press Enter to search. Press Esc to cancel.