HackerFeeds

CyberSecurity News

New OXLOADER Loader Uses Malicious Google Ads to Deliver CastleStealer

The Hacker News
· June 22, 2026

AI summary

Researchers have identified a new campaign that uses a previously unknown malware loader called OXLOADER to deliver CastleStealer. The campaign starts with malicious Google Ads, which are used to distribute the malware. The threat actor behind the campaign is believed to be Russian-speaking and motivated by financial gain. Elastic Security Labs has disclosed details of the campaign, shedding light on this new distribution method. The use of malicious ads as a starting point allows the attacker to reach potential victims. The campaign's tactics suggest a focus on generating revenue.

Read the full article at The Hacker Newsthehackernews.com/2026/06/new-oxloader-loader-uses-malicious.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.