Xloader -
Initially tracked by security researchers in late 2020, XLoader has been utilized in massive email spam campaigns, primarily targeting manufacturing, healthcare, and financial sectors. Its recent variant, targeting macOS, marks a departure from the typical "Windows-only" strategy of commodity stealers, making it a threat of high concern for heterogeneous network environments.
Beyond merely stealing information, XLoader operates as a botnet agent, allowing attackers to maintain persistence on infected machines. xloader
XLoader hides in legitimate system processes, using anti-analysis and anti-VM (Virtual Machine) techniques to avoid detection by sandbox environments. Initially tracked by security researchers in late 2020,