
RoningLoader Attack Chain Combines DLL Side-Loading With Code Injection
Cybersecurity researchers at AttackIQ have developed a new attack graph to simulate the advanced tactics and procedures used by the RoningLoader malware. Linked to the threat actor DragonBreath (also known as APT-Q-27) in recent November 2025 campaigns documented by Elastic Security Labs, RoningLoader is a stealthy threat that heavily relies on evasion. The newly released […] The post RoningLoader Attack Chain Combines DLL Side-Loading With Code Injection appeared first on Cyber Security News.