• Alerts
  • Events
  • DCR
    • Explore Cyware Products
    Alerts Events DCR
    Go to listing page

    KoiLoader Reloaded: New Variant Uses LNK Abuse, Script Chains, and PowerShell to Deliver Stealer Payload

    • Malware and Vulnerabilities
    • April 01, 2025
    • SecurityOnline
    Researchers at eSentire spotted a new KoiLoader variant using phishing, LNK file abuse, PowerShell, and layered scripts to evade detection, gain persistence, and deliver KoiStealer malware for data theft via encrypted C2 communication.
    Read More
    • KoiLoader
    • Koi Stealer
    • Malware Loader
    • Information stealer
    • .LNK file
    Cyware Publisher

    Publisher

    Previous

    Apple Releases Key Zero-Day Fixes for iOS, iPadOS, and ...

    Malware and Vulnerabilities

    Next

    Russian Hackers Exploit MSC EvilTwin Flaw to Deploy Sil ...

    Threat Actors


    RESOURCES
    Cyber Fusion Center Guide
    EVENTS

    News and Updates, Hacker News

    Get in touch with us now!

    1-855-692-9927


    Download Cyware Social App

    Terms of Use Privacy Policy © 2023