GootLoader Malware Still Active, Deploys New Versions for Enhanced Attacks
Threat actors are still actively using the malware known as GootLoader in an effort to infect more hosts with malware.
GootLoader has been released in multiple versions due to changes to its payload; the most recent version, GootLoader 3, is presently in use, according to a study released last week by cybersecurity company Cybereason.
The general functioning and infection techniques of GootLoader payloads have not altered since the malware's 2020 revival, despite certain payload details changing over time.
GootLoader, a malware loader that is a component of the Gootkit financial trojan, has been associated with Hive0127, also known as UNC2565. It is disseminated by search engine optimization (SEO) poisoning techniques and employs malicious JavaScript read more about GootLoader Ma...


