Security · 2h ago
New Go Loader HollowFrame Deploys Rust Backdoor in Law Firm Phishing
Researchers at Blackpoint Cyber discovered a new Go-based loader framework called HollowFrame and a Rust-based malware family named Matryoshka. The attack starts with a spear-phishing email containing a link to an encrypted archive with a Windows Shortcut. Executing the shortcut triggers a multi-stage chain that ultimately deploys the backdoor.
Meridian48 take
This highlights the growing use of cross-language malware to evade detection, but the real story is the continued effectiveness of spear-phishing against legal targets.
Read the full reporting
HollowFrame Loader Deploys Matryoshka Backdoor in Spear-Phishing Attack on Law Firm →
The Hacker News
malwarespear-phishing