CyberWire Daily cover image

CyberWire Daily

The JPHP loader breaking away from the pack. [Research Saturday]

Dec 7, 2024
Shawn Kanady, Global Director of Trustwave SpiderLabs, dives into the fascinating world of Pronsis Loader malware, a new threat using the rare programming language JPHP. He uncovers its stealthy installation tactics and ability to deliver dangerous payloads like Lumma Stealer. The discussion highlights the growing prevalence of loader malware, emphasizing the need for robust cybersecurity measures. Kanady also sheds light on the tactics cybercriminals employ, including phishing and social engineering, making it clear that user awareness is crucial in the evolving threat landscape.
25:52

Episode guests

Podcast summary created with Snipd AI

Quick takeaways

  • The discovery of Pronsis Loader highlights the evolving landscape of malware, particularly through its unique use of the JPHP programming language for stealthy operations.
  • Organizations must enhance their cybersecurity awareness and implement robust security measures to combat the significant threats posed by loader and info-stealer malware.

Deep dives

Understanding Pronsus Loader Malware

Pronsus Loader is a newly identified type of malware that operates by connecting to remote servers controlled by threat actors to download additional harmful payloads. It is categorized as 'loader malware' due to its primary function of initiating other types of malware, which may include info stealers or other loaders. This variant is particularly interesting because it utilizes JPHP, a Java version of PHP, a less common coding framework among malware types. The discovery of Pronsus Loader occurred during a campaign targeting another loader called Latrodectus, illustrating how different malware types can interact and facilitate further attacks on systems.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode