#VidarStealer

2024-03-20

ESET Research reports that AceCryptor use surged in the second half of 2023. This included Remcos RAT campaigns for the first time, using compromised accounts for credibility in phishing emails. AceCryptor + Remcos campaigns targeted Poland, Bulgaria, Spain, and Serbia. Campaigns were described, MITRE ATT&CK TTPs and IOC provided. 🔗 welivesecurity.com/en/eset-res

#AceCryptor #threatintel #IOC #Remcos #RemcosRAT #VidarStealer #Stopransomware #SmokeLoader

2023-07-24

I'm getting malwarebytes warnings when I try to check out mastodon users on "nerd culture . de" (added spaces to prevent autolinking out of caution) and there appear to be reports circulating of malware called "vidar stealer" which may have compromised one or more accounts on that instance.

malware.news/t/vidar-stealer-e

tria.ge/221002-v397lafch4

#Malware #VidarStealer #fediverse #NerdCulture (not sure how to reach out to instance owners directly 😮)

The malware downloader known as BATLOADER has been observed abusing Google Ads to deliver secondary payloads like Vidar Stealer and Ursnif. thehackernews.com/2023/03/batl #CyberSecurity #GoogleAds #BATLOADER #malware #VidarStealer #Ursnif

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst