← Back to Feed
GoFlateLoader: A Widespread Golang Loader Delivering Multiple Infostealers
June 10, 2026 · Gen Digital · Severity: MEDIUM
Intentionally Inflated Go Binaries That Use Massive PE Overlays to Bypass Detection
Key Takeaways
- Gen Digital analyzed GoFlateLoader, a widespread Golang loader that delivers multiple information-stealing malware families to victims.
- The loader uses intentionally inflated Go binaries with massive PE overlays to bypass detection by security products.
- Defenders should inspect Go binaries for suspicious overlays and monitor for GoFlateLoader-led infostealer infections in their environments.