SoupDealer Malware Bypasses Every Sandbox, AV’s, XDR/EDR in Real-World Incidents

In early August 2025, cybersecurity teams in Türkiye detected a new Java-based loader that avoided detection by all public sandboxes, antivirus programs, and enterprise EDR/XDR systems. A phishing campaign, known as SoupDealer, emerged, distributing a three-stage loader through files like TEKLIFALINACAKURUNLER.jar. Hot Topic German police read Signal, Telegram, WhatsApp messages without breaking encryption By infosecbulletin … Continue reading SoupDealer Malware Bypasses Every Sandbox, AV’s, XDR/EDR in Real-World Incidents