As cited
Copy frozen at (site build).
Grandoreiro Resurfaces in Mexico With New DLL Sideloading Campaign
No summary had been written when this copy was frozen.
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
Grandoreiro Resurfaces in Mexico With New DLL Sideloading Campaign
Grandoreiro, a banking malware thought disrupted in 2024, has resumed operations with a new DLL sideloading campaign targeting Mexico, where it accounts for 40% of current detections.
Why it matters: Financial institutions and enterprises in Mexico face renewed exposure to Grandoreiro's banking fraud capabilities; practitioners should review endpoint detection for DLL sideloading techniques and monitor for this malware's return.
- Source published
- First seen by Cybersecurity Tracker