LausivLoader analysis, or how to pass data between malware stages, (Thu, Sep 17th)

This article shows how a staged malware campaign used obfuscated JavaScript and PowerShell, plus environment-variable inheritance between processes, to pass data across execution phases and complicate analysis. For CIOs and technology leaders, the business impact is clear: adversaries are increasingly using legitimate Windows behaviors and multi-stage payload delivery to evade detection, which raises the bar for email security, endpoint monitoring, and incident response. IT organizations should expect that single-file scanning or isolated script review may miss the full attack chain, making visibility across mail, process, and child-process activity essential.

SANS Internet Storm Center2 min read
Read full article
LausivLoader analysis, or how to pass data between malware stages, (Thu, Sep 17th)

Read the full story at SANS Internet Storm Center →