// EN

HollowFrame Loader Deploys Matryoshka Backdoor in Spear-Phishing Attack on Law Firm


HollowFrame Loader Deploys Matryoshka Backdoor in Spear-Phishing Attack on Law Firm

Release Date: 1 8 月, 2026 7:14 上午
Campaign: MirrorSpeed EN
Source Site: The Hacker News

Summary

Cybersecurity researchers have shed light on a previously undocumented Go-based loader framework called HollowFrame and a Rust-based malware family tracked as Matryoshka.

According to Blackpoint Cyber, the intrusion sequence begins with a spear-phishing message containing a link to an encrypted archive, which holds a Windows Shortcut (LNK). Executing the file triggers a multi-stage chain that

Cybersecurity researchers have shed light on a previously undocumented Go-based loader framework called HollowFrame and a Rust-based malware family tracked as Matryoshka.

According to Blackpoint Cyber, the intrusion sequence begins with a spear-phishing message containing a link to an encrypted archive, which holds a Windows Shortcut (LNK). Executing the file triggers a multi-stage chain that

Author:

{authorlink}

Original Article: Read Full Post