GLOBEALERT
CYBERELEVATEDJun 22 · Jun 22, 2026, 1:20 PM

New OXLOADER Loader Uses Malicious Google Ads to Deliver CastleStealer

The Hacker News

Cybersecurity researchers have disclosed details of a new campaign that delivers CastleStealer by means of a previously unreported malware loader dubbed OXLOADER. According to Elastic Security Labs, the campaign leverages malicious Google Ads as a starting point to distribute the malware. Evidence indicates that the threat actor is likely Russian-speaking and financially motivated, owing to the

GlobeAlert aggregates and classifies open sources; the story above belongs to its publisher. Summaries are machine-generated from the source text.

More in Cyber