Qilin Leads April 2025 Ransomware Spike with 45 Breaches Using NETXLOADER Malware

May 8, 2025

Threat actors with ties to the Qilin ransomware family have leveraged malware known as SmokeLoader along with a previously undocumented .NET compiled loader codenamed NETXLOADER as part of a campaign observed in November 2024.
“NETXLOADER is a new .NET-based loader that plays a critical role in cyber attacks,” Trend Micro researchers Jacob Santos, Raymart Yambot, John Rainier Navato, Sarah Pearl

Get Free Report & Network Analysis

Please check your email for the free report.