Skip to main content
← All Articles

Tag

#infostealer

23 articles

Advertisement

MA
HIGH
Malware

Lumma Stealer and Sectop RAT Dual Infection Chain Analysis

Technical breakdown of the Lumma Stealer and Sectop RAT (ArechClient2) infection chain, detailing C2 communication and persistence mechanisms.

Runtime Rebel Intel
3 min read·Apr 17, 2026
MA
HIGH
Malware

Infinity Stealer macOS Malware: Analyzing ClickFix Lures and Payloads

Infinity Stealer targets macOS via ClickFix social engineering. Learn how this Nuitka-compiled malware steals browser data, crypto wallets, and Keychain info.

Runtime Rebel Intel
3 min read·Mar 28, 2026
SU
HIGH
Supply Chain

Backdoored Telnyx PyPI Package Uses Steganography to Deliver Malware

Security researchers discovered malicious versions of the Telnyx PyPI package delivering infostealers via steganography hidden in WAV audio files.

Runtime Rebel Intel
3 min read·Mar 28, 2026
TH
HIGH
Threat Intel

GitHub Malware Campaign: Fake VS Code Alerts Target Developers

Attackers exploit GitHub Discussions to push malware via fake VS Code security alerts. Learn the TTPs used to target developers and how to mitigate risk.

Runtime Rebel Intel
3 min read·Mar 27, 2026
MA
HIGH
Malware

Torg Grabber Infostealer: Threat to 728 Crypto Wallets

Analysis of Torg Grabber infostealer, detailing its methods for exfiltrating sensitive data from 728 cryptocurrency wallets and 850 browser extensions.

Runtime Rebel Intel
4 min read·Mar 25, 2026
Malicious GitHub OpenClaw Deployer Repos Deliver Trojans
HIGH
Supply Chain

Malicious GitHub OpenClaw Deployer Repos Deliver Trojans

Analysts uncover an AI-assisted campaign using over 300 poisoned GitHub repositories like OpenClaw Deployer to distribute infostealers to developers.

Runtime Rebel Intel
4 min read·Mar 24, 2026
SU
HIGH
Supply Chain

Trivy Supply Chain Attack: TeamPCP Pushes Infostealer via GitHub

Threat actor TeamPCP compromised the Trivy-action repository to distribute infostealer malware through GitHub Actions, targeting CI/CD pipelines and secrets.

Runtime Rebel Intel
3 min read·Mar 21, 2026
Credential Theft Surge: Understanding Infostealer & AI Social Engineering
HIGH
Identity & Access

Credential Theft Surge: Understanding Infostealer & AI Social Engineering

Credential theft surged in late 2025, driven by sophisticated infostealer malware and AI-enhanced social engineering. Learn to defend against evolving identity-based

Runtime Rebel Intel
4 min read·Mar 18, 2026
2025 Identity Threat Report: Analyzing the Infostealer Economy
HIGH
Identity & Access

2025 Identity Threat Report: Analyzing the Infostealer Economy

Recorded Future's 2025 Identity Threat Landscape Report examines how infostealer malware and session cookie theft drive the modern credential threat economy.

Runtime Rebel Intel
3 min read·Mar 16, 2026
ClickFix Campaigns Deliver MacSync macOS Infostealer via Fake AI Tools
HIGH
Threat Intel

ClickFix Campaigns Deliver MacSync macOS Infostealer via Fake AI Tools

Threat actors use ClickFix social engineering tactics to deploy the MacSync infostealer on macOS systems via fraudulent AI software installers.

Runtime Rebel Intel
4 min read·Mar 16, 2026
MA
MEDIUM
Malware

Arkanix Stealer: Analysis of AI-Assisted Infostealer Development Patterns

A technical evaluation of the Arkanix Stealer operation, highlighting its AI-driven code characteristics and credential-harvesting capabilities.

Runtime Rebel Intel
2 min read·Feb 23, 2026