Skip to content
iSec News
  • News
  • Cybercrime
  • Risk
  • Policy
  • Privacy
  • Research
  • Cloud
  • Insurance
  • LinkedIn
  • Facebook
  • Researchers detail OXLOADER malware loader used in CastleStealer campaign

    Cybercrime, Research, Risk
    June 23, 2026

    Researchers say a new malware loader called OXLOADER is being used to deliver CastleStealer through malicious Google ads, a fake Node.js site, and a Storj-hosted script in a campaign tracked as REF8372.

    Researchers detail OXLOADER malware loader used in CastleStealer campaign

Latest NEWS

  • Google sets Sept. 30 deadline for Android developer verification in four countries

    June 23, 2026
    Google sets Sept. 30 deadline for Android developer verification in four countries

  • Canada spy agency used court warrant to disrupt foreign botnets on home routers and IoT gear

    June 23, 2026
    Canada spy agency used court warrant to disrupt foreign botnets on home routers and IoT gear

  • AryStinger malware turns legacy routers into reconnaissance network

    June 23, 2026
    AryStinger malware turns legacy routers into reconnaissance network

  • INTERPOL warns of surge in phishing, ransomware and scam centers across Asia and the South Pacific

    June 22, 2026
    INTERPOL warns of surge in phishing, ransomware and scam centers across Asia and the South Pacific

  • Microsoft details AutoJack flaw that could let a web page trigger code on AI agent hosts

    June 20, 2026
    Microsoft details AutoJack flaw that could let a web page trigger code on AI agent hosts

  • State actors hijacked Notepad++ updater to redirect users to malicious servers

    Cybercrime, News, Vendors, Vulnerabilities

    ·

    February 3, 2026
    State actors hijacked Notepad++ updater to redirect users to malicious servers
  • eScan update servers used to deliver persistent downloader in supply chain attack

    News, Research, Vulnerabilities

    ·

    February 3, 2026
    eScan update servers used to deliver persistent downloader in supply chain attack
  • Threat actor compromises about 1,400 exposed MongoDB servers in low-value extortion campaign

    Cloud, Cybercrime, News, Vulnerabilities

    ·

    February 2, 2026
    Threat actor compromises about 1,400 exposed MongoDB servers in low-value extortion campaign
  • Iran-linked RedKitten campaign uses AI-generated macros to deploy SloppyMIO backdoor

    Cybercrime, News, Research

    ·

    February 2, 2026
    Iran-linked RedKitten campaign uses AI-generated macros to deploy SloppyMIO backdoor
  • TriZetto breach may have exposed PHI for more than 700,000, Oregon providers to notify patients

    Cybercrime, News, Privacy, Vendors

    ·

    January 31, 2026
    TriZetto breach may have exposed PHI for more than 700,000, Oregon providers to notify patients
Loading…Load More
iSec News
  • LinkedIn
  • Facebook
  • About
  • Editorial Policy
  • Privacy
  • Contact