Tag: Latrodectus malware

Latrodectus Malware Loader Emerges as IcedID’s Successor in Phishing Campaigns
News

Latrodectus Malware Loader Emerges as IcedID’s Successor in Phishing Campaigns

Beginning in early March 2024, cybersecurity researchers have noticed an increase in email phishing efforts that distribute Latrodectus, a newly developed malware loader that is thought to be the IcedID virus's successor. Researchers Daniel Stepanic and Samir Bousseaden of Elastic Security Labs stated that "these campaigns usually involve a recognizable infection chain involving oversized JavaScript files that utilize WMI's ability to invoke msiexec.exe and install a remotely-hosted MSI file, remotely hosted on a WEBDAV share." Latrodectus has the usual features one would anticipate from malware that is meant to release extra payloads like QakBot, DarkGate, and PikaBot, enabling threat actors to carry out a range of post-exploitation operations. A thorough examination of the most...
New Latrodectus malware replaces IcedID in network breaches
News

New Latrodectus malware replaces IcedID in network breaches

Latrodectus is a relatively recent malware that has been observed in malicious email campaigns since November 2023. It is thought to be a development of the IcedID loader. Researchers from Proofpoint and Team Cymru discovered the malware, and they collaborated to record its limited and experimental functionalities. When the IcedID malware family was first discovered in 2017, it was thought to be a modular banking trojan that was intended to steal financial data from compromised machines. It improved in sophistication over time, gaining the ability to evade detection and carry out commands. It has used as a loader for ransomware and other malware in recent years read more New Latrodectus malware replaces IcedID in network breaches. Get up to date on the latest cybersecurity new...