#stealer — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #stealer, aggregated by home.social.
-
New one on me... #haze #stealer:
https://app.any.run/tasks/efd789a0-24c2-4bf1-8609-5aa8c0b80d2e/
c2: api\.hazexd\.lol
-
Fake ‘Lithium’ Minecraft Optimization Mod Hides Myth Stealer RAT Behind 12 Working Features
A trojanized Minecraft performance mod posing as the popular Lithium optimization project is quietly installing Myth Stealer, an information-stealing remote access tool that harvests browser credentials, session cookies, and screenshots while thirteen legitimate-looking modules keep the game running normally. Researchers say the samples evaded detection entirely on VirusTotal at the time of discovery. -
2026-01-01 (Thursday): #LummaStealer infection with follow-up malware.
A #pcap of the infection traffic, the #Lumma #Stealer files, and a list of IOCs are available at https://www.malware-traffic-analysis.net/2026/01/01/index.html
Lumma Stealer C2 domain: offenms[.]cyou
The follow-up malware is using memory-scanner[.]cc for its C2 traffic, just like I saw on 2025-12-30. But this follow-up malware also used another C2 domain: communicationfirewall-security[.]cc