AttackIQ has released a new assessment template that emulates the behaviors of RoningLoader, a multi-stage loader observed in recent intrusion campaigns. RoningLoader operates through a layered execution chain, enabling stealthy deli…
#hackernews #news
AttackIQ has released a new assessment template that emulates the behaviors of RoningLoader, a multi-stage loader observed in recent intrusion campaigns. RoningLoader operates through a layered execution chain, enabling stealthy deli…
#hackernews #news
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Contagious Interview Actors Now Utilize JSON Storage Services for Malware Del…
#gpt #hackernews #news
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter Contagious Interview Actors Now Utilize JSON Storage Services for Malware Del…
#gpt #hackernews #news
The threat actor known as Dragon Breath has been observed making use of a multi-stage loader codenamed RONINGLOADER to deliver a modified variant of a remote access trojan called Gh0st RAT.
…
#hackernews #microsoft #news
The threat actor known as Dragon Breath has been observed making use of a multi-stage loader codenamed RONINGLOADER to deliver a modified variant of a remote access trojan called Gh0st RAT.
…
#hackernews #microsoft #news
Introduction A sophisticated cyber‑espionage campaign has resurfaced, now linked to a threat actor known as Dragon Breath, which has deployed a new loader dubbed RONINGLOADER. This campaign aims squarely at Chinese-speaking users,…
Introduction A sophisticated cyber‑espionage campaign has resurfaced, now linked to a threat actor known as Dragon Breath, which has deployed a new loader dubbed RONINGLOADER. This campaign aims squarely at Chinese-speaking users,…
Introduction: The cybersecurity landscape is witnessing a sophisticated evolution in malware delivery mechanisms, with RoningLoader emerging as a prime example. This advanced threat utilizes a multi-stage, fileless…
Introduction: The cybersecurity landscape is witnessing a sophisticated evolution in malware delivery mechanisms, with RoningLoader emerging as a prime example. This advanced threat utilizes a multi-stage, fileless…
cybersecuritynews.com/roningloader...
cybersecuritynews.com/roningloader...
By: Varshini on Thursday, April 9, 2026
By: Varshini on Thursday, April 9, 2026
By: info@thehackernews.com (The Hacker News) on Monday, November 17, 2025
By: info@thehackernews.com (The Hacker News) on Monday, November 17, 2025
By: Tushar Subhra Dutta on Saturday, November 15, 2025
By: Tushar Subhra Dutta on Saturday, November 15, 2025
By: Mayura Kathir on Friday, November 14, 2025
By: Mayura Kathir on Friday, November 14, 2025
● New malware entries: Fullmetal, Laplas, RoningLoader, ShadowRat, Silentsweeper and SystemShock
● Updated malware entries: 29
● FP-fixed signatures: 931
● 16587 new clean programs whitelisted
● 3452882 new functions
● 165257 new strings
● New malware entries: Fullmetal, Laplas, RoningLoader, ShadowRat, Silentsweeper and SystemShock
● Updated malware entries: 29
● FP-fixed signatures: 931
● 16587 new clean programs whitelisted
● 3452882 new functions
● 165257 new strings
Dragon Breathとして知られる脅威アクターが、RONINGLOADERというコードネームの多段ローダーを利用し、リモートアクセス型トロイの木馬「Gh0st RAT」の改変バージョンを配布していることが確認されました。 このキャンペーンは主に中国語話者を標的としており、Elastic Security Labsによると、Google ChromeやMicrosoft Teamsなどの正規ソフトを装ったトロイ化されたNSISインストーラーが使われています。…
Dragon Breathとして知られる脅威アクターが、RONINGLOADERというコードネームの多段ローダーを利用し、リモートアクセス型トロイの木馬「Gh0st RAT」の改変バージョンを配布していることが確認されました。 このキャンペーンは主に中国語話者を標的としており、Elastic Security Labsによると、Google ChromeやMicrosoft Teamsなどの正規ソフトを装ったトロイ化されたNSISインストーラーが使われています。…