Intelligence Insights: December 2024
ID: 59d036ae-8682-508c-9952-c8784e837ae4
STIX ID: report--59d036ae-8682-508c-9952-c8784e837ae4
Feed Name: Red Canary
Threat Score
This report details a surge in HijackLoader deployments delivering LummaC2 and other malware via ZIP archives that pair legitimate executables with malicious DLLs, leveraging DLL sideloading, process injection, and suspended child-process injection to achieve credential theft and persistent C2 connectivity; the write-up includes behavioral indicators and example IOCs and highlights an exponential increase in November.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
