CRITICALAdvisoryJul 21, 2026
Action required
Immediately hunt for HelloInjector (wtsapi32.dll) DLL sideloading artifacts and HelloNet malware modules (HelloProxy, HelloExecutor, HelloCleaner, HelloBackdoor) in your environment. Block known C2 infrastructure and audit ViPNet update integrity on all endpoints.
Affected products
ViPNetInfoTeCSKaspersky
Linked articles