China-linked APT41 group targets Hong Kong with Spyder Loader
Security Affairs
OCTOBER 18, 2022
Winnti (aka APT41 , Axiom, Barium , Blackfly) is a cyberespionage group that has been active since at least 2007. Spyder Loader loads AES-encrypted blobs to create the wlbsctrl.dll which acts as a next-stage loader that executes the content. Follow me on Twitter: @securityaffairs and Facebook. Pierluigi Paganini.
Let's personalize your content