New Arcane stealer spreading via YouTube and Discord. (securelist.com)
from Tea@programming.dev to cybersecurity@infosec.pub on 19 Mar 10:34
https://programming.dev/post/27186980

At the end of 2024, we discovered a new stealer distributed via YouTube videos promoting game cheats. What’s intriguing about this malware is how much it collects. It grabs account information from VPN and gaming clients, and all kinds of network utilities like ngrok, Playit, Cyberduck, FileZilla and DynDNS. The stealer was named Arcane, not to be confused with the well-known Arcane Stealer V. The malicious actor behind Arcane went on to release a similarly named loader, which supposedly downloads cheats and cracks, but in reality delivers malware to the victim’s device.

#cybersecurity

threaded - newest