Tool
Donut Loader
- First Reported
- Sep 27, 2026
- Latest Reported
- Sep 27, 2026
Reported Context (1)
- The shellcode loading methods have also continued to evolve, including the use of sRDI, Donut Loader, the addition of XOR operations, a shift from CreateFile to VirtualAlloc-based loading, and the application of code Researchers Track Malware Distributed Through Fake KakaoTalk Installers
Malware (3)
Threat Actors (2)
MITRE ATT&CK (6)
Products (4)
Tools (1)
Note: Related entities, including threat actors, malware, CVEs, MITRE ATT&CK techniques, vendors, products, tools, countries, and industries, are shown when they appear in the same reporting. Their presence does not necessarily mean they were targeted, compromised, vulnerable, responsible for the activity, or directly involved in the incident.