CyberSecurityBoardThreat Intel · CVEs · Products
Malware

HelloInjector: Loader DLL Sideloaded via ViPNet Update

August 10, 2026

HelloInjector is a malicious loader DLL that is sideloaded by the ViPNet update binary itcsrvup64.exe. It injects itself into svchost.exe processes and loads additional payloads. It is part of the HelloNet attack campaign targeting Russian organizations.