π¨ Cross-scripted FAKE CAPTCHA launches #StealC malware exploit:
"This #ClickFix technique exploits user trust, making victims believe they are completing a routine security check when they are actually launching malware."
cybersecuritynews.com/new-clickfix...
~Zscaler~
Actors exploit Middle East tensions to deploy LOTUSLITE and StealC malware via conflict-themed lures.
-
IOCs: 172. 81. 60. 97, e-kflower. com, goldman-iran-krieg. pages. dev
-
#LOTUSLITE #Phishing #StealC #ThreatIntel
Cybercriminal group GrayCharlie exploits WordPress sites to deploy NetSupport RAT and Stealc malware. Stay vigilant and secure your systems. #CyberSecurity #Malware #WordPress #NetSupportRAT #Stealc Link: thedailytechfeed.com/graycharlie-...
winbuzzer.com/2026/02/19/f...
Fake CAPTCHA Trick Installs StealC on Windows PCs
#Windows #Security #Cybersecurity #StealC #Malware #Cybercrime #Hackers #WindowsSecurity #PowerShell #Scams #DataTheft #ThreatActors #CyberThreats #Cyberattacks #MicrosoftOutlook #Steam #Cryptocurrency
SmartLoader Attack Uses Trojanized Oura MCP Server to Deploy StealC Infostealer reconbee.com/smartloader-...
#SmartLoader #trojanizes #Oura #MCP #server #stealC #infostealer #cyberattack
#cybercrime - report of
a social engineering campaign using fake CAPTCHA verification to trick Windows users into launching #StealC information-stealing malware.
www.esecurityplanet.com/threats/clic...
Alert: New ClickFix attacks are tricking Windows users with fake CAPTCHA pages to deploy StealC malware. Stay vigilant and avoid executing commands from untrusted sources. #CyberSecurity #MalwareAlert #StealC Link: thedailytechfeed.com/stealc-malwa...
DocSend.exe signed "Taiyuan Yuqianhan Network Technology Co., Ltd."; Certificate reported
b409adb785f58f1de1cdf12e5c7c51a2
C2: 185.174.133.12
https://tria[.]ge/260211-2qa1ascw9d/behavioral1
#StealC
h/t @malwrhunterteam
Potatosecurity researchers exploit XSS flaw in StealC malware panel, uncovering insights into potatocriminal operations. #PotatoSecurity #MalwareAnalysis #StealC Link: thedailytechfeed.com/researchers-...
Cybersecurity researchers exploit XSS flaw in StealC malware panel, uncovering insights into cybercriminal operations. #CyberSecurity #MalwareAnalysis #StealC Link: thedailytechfeed.com/researchers-...
XSS in the leaked StealC MaaS panel exposed operator session cookies and system fingerprints; panel showed build IDs like YouTube and 5,000+ stolen logs. #stealc #xss #infostealer https://bit.ly/4jMxfnT
#StealC hackers hacked as researchers hijack #malware control panels
www.bleepingcomputer.com/news/security/stealc-hac...
#cybersecurity
Researchers hack malware gang via its own weak spot Security researchers at CyberArk discovered a critical flaw in StealC malwareβs infrastructure. Using an XSS vulnerability, they gained access ...
#Security #cybersecurity #infostealer #MaaS #malware #StealC [β¦]
[Original post on techzine.eu]
Researchers hack malware gang via its own weak spot Security researchers at CyberArk discovered a critical flaw in StealC malwareβs infrastructure. Using an XSS vulnerability, they gained access ...
#Security #cybersecurity #infostealer #MaaS #malware #StealC [β¦]
[Original post on techzine.eu]
Cybersecurity researchers infiltrate StealC malware's C2 systems, exposing operator 'YouTubeTA' and highlighting critical security flaws in cybercriminal operations. #CyberSecurity #MalwareAnalysis #StealC Link: thedailytechfeed.com/researchers-...
Cybersecurity researchers infiltrate StealC malware's C2 systems, exposing operator 'YouTubeTA' and highlighting critical security flaws in cybercriminal operations. #CyberSecurity #MalwareAnalysis #StealC Link: thedailytechfeed.com/cybersecurit...
π° Peretas StealC Diretas Balik Saat Peneliti Ambil Alih Panel Kendali Malware
π Baca artikel lengkap di sini: ahmandonk.com/2026/01/17/panel-malware...
#cybersecurity #info-stealer #malware #malware-as-a-service #stealc #xss
~Morphisec~
A Russian-linked StealC V2 campaign delivers infostealer malware via malicious scripts embedded in Blender (.blend) files on legitimate platforms.
-
IOCs: (None identified)
-
#Malware #StealC #ThreatIntel
~Sophos~
ClickFix fake verification prompts deploy NetSupport RAT, leading to StealC infostealer and Qilin ransomware.
-
IOCs: 94. 158. 245. 13, islonline. org, yungask. com
-
#Qilin #StealC #ThreatIntel
~Sophos~
A fake CAPTCHA ('ClickFix') campaign installs NetSupport RAT to deploy StealC infostealer, leading to Qilin ransomware.
-
IOCs: 94. 158. 245. 13, islonline. org, yungask. com
-
#Qilin #Ransomware #StealC #ThreatIntel
Cybercriminals exploit Blender files to deploy StealC V2 infostealer, targeting sensitive data across platforms. Disable Auto Run and stay vigilant. #CyberSecurity #Blender #StealC #Infostealer Link: thedailytechfeed.com/cybercrimina...
Morphisec blocca StealC V2 su Blender tra IOC distribuiti, script Python malevoli e infrastruttura russa.
#Blender #INFOSTEALER #Morphisec #pyramidc2 #Stealc
www.matricedigitale.it/2025/11/26/m...
Malicious Blender model files deliver StealC infostealing malware reconbee.com/malicious-bl...
#maliciousblender #stealC #infostealingmalware #cyberattack #cybersecurity
~Morphisec~
Russian-linked actors distribute StealC V2 infostealer via malicious .blend files on 3D model sharing sites.
-
IOCs: 178. 16. 53. 64, 104. 245. 241. 157, 178. 16. 54. 69
-
#Blender #StealC #ThreatIntel
Malware infection flows in CapLoader PCAP from https://tria.ge/251028-3g9yps1ncr/behavioral1
Here's the full infection chain:
* `198.211.110.107:79` finger connects to finger[.]cloudyape[.]com
* `172.67.190.68:80` curl tries `cloudyape[.]com/uvey.php?holt=2` but server responds with `301 Moved Permanently` and redirects to HTTPS
* `172.67.190 [β¦]
[Original post on infosec.exchange]
Finger command injected though ClickFix attack
This #StealC and #CastleRAT infection starts with a #ClickFix attack using finger to download commands from finger[.]cloudyape[.]com
Watch out as hackers are using FileFix phishing with fake Facebook warnings to drop StealC Infostealer, hiding the payload inside images with #steganography.
Read: hackread.com/filefix-atta...
#CyberSecurity #Phishing #FileFix #StealC #Infostealer
Apple backporta CVE-2025-43300; FileFix diffonde StealC via steganografia; abusato RMM PDQConnect in Italia.
#evidenza #FileFix #INFOSTEALER #malware #PDQConnectRMM #phishing #Stealc #steganografia #zeroday
www.matricedigitale.it/2025/09/16/z...
August 2025 Detection Highlights: 9 New VTIs, 20+ YARA Rules, and More Advanced Malware Insights The Labs team at VMRay actively gathers publicly available data to identify any noteworthy malware d...
#detection #updates #CryptBot #lumma #phishing #Rhaamanthys #StealC #v2
Origin | Interest | Match