Octalyn Stealer Steals VPN Configurations, Passwords and Cookies in Structured Folders

A sophisticated new credential stealer disguised as a legitimate forensic toolkit has emerged on GitHub, targeting sensitive user data including VPN configurations, browser credentials, and cryptocurrency wallet information. The Octalyn Stealer, first identified in July 2025, presents itself as an educational research tool while functioning as a fully operational malware designed for large-scale data theft and exfiltration. The malware employs a dual-language architecture combining C++ for its c...

Save to Folder

Choose a folder to save this article: