CyberWire Daily

The JPHP loader breaking away from the pack. [Research Saturday]

Dec 7, 2024 · 22 min · Season 8 · Episode 356Bonus
0:00-22:52

Streams straight from the publisher. podnod never proxies or re-hosts episode audio.

Shawn Kanady, Global Director of Trustwave SpiderLabs, to discuss their work on "Pronsis Loader: A JPHP-Driven Malware Diverging from D3F@ck Loader." Trustwave SpiderLabs has uncovered Pronsis Loader, a new malware variant using the rare programming language JPHP and stealthy installation tactics to evade detection.

The malware is capable of delivering high-risk payloads like Lumma Stealer and Latrodectus, posing a significant threat. Researchers highlight its unique capabilities and infrastructure, offering insights for bolstering cybersecurity defenses.

The research can be found here: