HackerFeeds

CyberSecurity News

Cruciferra Crypter Uses BYOVD and Process Ghosting to Hide Windows Malware

The Hacker News
· July 27, 2026

AI summary

A China-linked cybercrime group has been using a crypter service called Cruciferra to hide Windows malware. The group has been targeting Indian taxpayers, tax professionals, and corporate finance teams with income tax-related phishing lures. Cruciferra has also been used by other unrelated cybercriminal threat clusters to deliver various remote access tools. The crypter service utilizes techniques such as BYOVD and process ghosting to evade detection. According to Proofpoint's analysis, Cruciferra is a sophisticated tool used to deliver a wide range of malware. Its use suggests that various cybercriminal groups are leveraging advanced tools to carry out their operations.

Countries in focus

Read the full article at The Hacker Newsthehackernews.com/2026/07/cruciferra-crypter-uses-byovd-and.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.