ThreatCluster

MastaStealer Uses Windows LNK Files to Execute PowerShell and Evade Defender

First seen 13 Nov 2025, 17:30 UTC GbhackersCybersecuritynews 33

Article Content

Browse articles
ThreatCluster

MastaStealer has been identified as a malware that exploits Windows LNK files to execute PowerShell commands, effectively bypassing Microsoft Defender's security measures. This tactic poses a risk to users by enabling unauthorized access and execution of malicious scripts. The specific impact on affected systems and users has not been detailed in the reports.