GachiLoader Uses Obfuscated Node.js Malware to Deploy Infostealer Payloads
First seen 18 Dec 2025, 21:53 UTC
•
•37
Export
Article Content
Browse articles
GachiLoader has been identified as a JS-based loader that deploys various payloads, including the Rhadamanthys infostealer, on compromised Windows systems. The malware is distributed through various channels, targeting users and organizations to extract sensitive information.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Google Addresses Eighth Chrome Zero-Day Vulnerability in 2025
China-linked Cyber Group Expands Targeting to Southeastern Europe
China-Nexus APT UAT-7290 Targets South Asia Telecoms in Cyber Espionage Campaign
China-linked UAT-7290 Targets Telcos in Cyberespionage Campaign
UAT-7290 Cyber Espionage Targets South Asian Telecoms
APT28 Exploits MSHTML Zero-Day Vulnerability in Windows