logo

New JinxLoader Targeting Users with Formbook and XLoader Malware

ID: 105d10ce-0b79-5e9b-89f8-0126220363b5

STIX ID: report--105d10ce-0b79-5e9b-89f8-0126220363b5

Feed Name: The Hacker News

Threat Score
70/100

Date Published: 2024-01-01

Date Updated: 2026-04-23

Author: [email protected] (The Hacker News)

...
...

**Emerging loader-based malware campaigns:** The report describes the rise of a Go-based loader called JinxLoader, advertised on underground forums and distributed via phishing (password-protected RAR attachments) to deliver next-stage payloads like Formbook and XLoader, alongside broader trends of loader/stealer activity (Rugmi, DarkGate, PikaBot, IDAT Loader) and updated stealers (Meduza, Vortex) being marketed on the dark web.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.