HollowFrame is a malware family tracked by ThreatCluster, appearing in 1 threat cluster built from 2 intelligence report mentions.
HollowFrame is a malware family tracked across 1 threat cluster and 2 intelligence report mentions on ThreatCluster. First observed August 1, 2026; most recent activity August 3, 2026.
A sophisticated cyberattack has been identified, targeting a law firm with a new Go-based loader named HollowFrame and a Rust-based malware family called Matryoshka. The attack commenced with a spear-phishing email…
HollowFrame is a malware family tracked by ThreatCluster, appearing in 1 threat cluster built from 2 intelligence report mentions.
The most recent intelligence report mentioning HollowFrame on ThreatCluster is dated August 3, 2026. Activity was first observed August 1, 2026, giving a tracked span from then to August 3, 2026.
Across ThreatCluster reporting, HollowFrame most frequently co-occurs with Malware, Phishing, Matryoshka, T1047 - Windows Management Instrumentation, T1053 - Scheduled Task/Job, among 12 tracked related entities.
The most significant recent cluster is “HollowFrame Loader and Matryoshka Malware Target Law Firm with Advanced Techniques” (2 articles · Updated August 3, 2026). HollowFrame appears across 1 threat cluster in total, listed above with sources.
HollowFrame appears in 2 intelligence report mentions across 1 deduplicated threat cluster, aggregated from 17,000+ monitored sources.