ImportantSecurity & Privacy
LausivLoader analysis, or how to pass data between malware stages, (Thu, Sep 17th)
This article shows how a staged malware campaign used obfuscated JavaScript and PowerShell, plus environment-variable inheritance between processes, to pass data across execution phases and complicate analysis. For CIOs and technology leaders, the business impact is clear: adversaries are increasingly using legitimate Windows behaviors and multi-stage payload delivery to evade detection, which raises the bar for email security, endpoint monitoring, and incident response. IT organizations should expect that single-file scanning or isolated script review may miss the full attack chain, making visibility across mail, process, and child-process activity essential.
SANS Internet Storm Center2 min read
