logo

HijackLoader Evolves: Researchers Decode the Latest Evasion Methods

ID: 3dad4324-07af-5b48-9efc-a02a92197331

STIX ID: report--3dad4324-07af-5b48-9efc-a02a92197331

Feed Name: The Hacker News

Threat Score
75/100

Date Published: 2024-02-08

Date Updated: 2026-04-24

Author: [email protected] (The Hacker News)

...
...

HijackLoader (aka IDAT Loader) is an actively used modular malware loader that has adopted advanced defense-evasion techniques — including process doppelgänging, variants of process hollowing, Heaven's Gate, and transacted hollowing — and is being leveraged by criminal groups (e.g., TA544) to deliver payloads such as DanaBot, SystemBC, Remcos RAT, and RedLine Stealer, increasing its stealth and complicating analysis.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.