In June 2023, Trend Micro observed an upgrade to the evasion techniques used by the Batloader initial access malware, the group behind Batloader (which we named Water Minyades) have begun employing Pyarmor Pro — a more sophisticated version of the regular Pyarmor protector command-line tool — to obfuscate its main malicious python scripts.


