SilentDataCollector: Credential and Data Stealer in StopAndProtect
SilentDataCollector is a stealer component that exfiltrates file lists, specific files, and credentials. It includes a keylogger, WhatsApp data exfiltration, and screenshot…
SilentDataCollector is a stealer component that exfiltrates file lists, specific files, and credentials. It includes a keylogger, WhatsApp data exfiltration, and screenshot…
wincfg is a Go-based stealer payload used in the StubMaker campaign. It extracts credentials from Chromium-based browsers, collects cryptocurrency wallets and seed…
Huntress researchers have uncovered a new ClickFix-style attack campaign targeting macOS users with a Go-based stealer malware capable of stealing cryptocurrency, browser…
Powercat is a Java-based information stealer and surveillance malware distributed via fake Xeno Executor cheats for Roblox and Minecraft. It can steal…
JSCEAL is a stealer malware tracked by Check Point, identified by Bitdefender in a September 2025 malvertising campaign targeting TradingView users. It…
WeevilProxy is the name used by WithSecure for the stealer malware that Bitdefender identified in a September 2025 malvertising campaign targeting TradingView.…
WithSecure is a cybersecurity company that tracks the stealer malware identified in the TradingView malvertising campaign as WeevilProxy. The same malware is…
ClickLock Stealer is a macOS stealer family that uses phishing pages employing the ClickFix technique to target users in Europe, North America,…
MacSync is a macOS stealer that targets user credentials and data. AmnesiaStealer is compared to MacSync in terms of overall objectives, but…
Rilide is a Chromium-based information stealer used by Russian-speaking threat actors since April 2023. It is installed as a hidden browser extension…