logo

New Moonwalk++ PoC Shows How Malware Can Spoof Windows Call Stacks and Evade Elastic-Inspired Rules

ID: 96d11ba6-06bc-5812-bb6b-f83ebaf1c09f

STIX ID: report--96d11ba6-06bc-5812-bb6b-f83ebaf1c09f

Feed Name: cybersecurityNews.com

Threat Score
70/100

Date Published: 2025-12-17

Date Updated: 2026-04-21

Author: Abinaya

...
...

Moonwalk++ is a published proof-of-concept demonstrating sophisticated call-stack spoofing, module resolution evasion, and in-memory encryption techniques that can bypass modern endpoint detection systems; the authors released code and documentation and reported that several popular detection tools failed to detect the technique during testing.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.