VOID Killer Malware — Analysis, Campaigns & Threat Activity

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
December 30, 2025
Last Seen
December 30, 2025

VOID Killer is a malware family that is being marketed as an “AV Killer,” with claims of a kernel-level component.

Overview

VOID Killer is a malware family that is being marketed as an “AV Killer,” with claims of a kernel-level component. The kernel involvement implies low-level control to evade detection, enable persistence, and carry out actions beneath standard security monitoring, making it a high-risk threat to endpoint security. Its appearance in the threat marketplace signals increasing availability of kernel-mode malware to criminal actors, elevating the cybersecurity risk landscape.

Related Threat Clusters

  • Crypt4You Advertises VOID KILLER Malware on Dark Web

    The threat actor Crypt4You has been promoting a new malware tool called VOID KILLER on underground forums. This software functions as a kernel-level antivirus and endpoint detection response (EDR) process killer,…

    2 articles · Updated December 30, 2025

Recent Intelligence Reports

  • Hackers Advertised VOID ‘AV Killer’ with Kernel — Cybersecuritynews · December 30, 2025

Related Entities

CVSS v3.1 Breakdown