Broadcom BoryptGrab Stealer Malware Campaign Targets Windows Users via Fake GitHub Repositories
Article Content
Browse articles
Trend Micro has reported a new malware campaign involving BoryptGrab, a stealer that targets Windows users through deceptive GitHub pages. This malware collects sensitive data, including browser and cryptocurrency wallet information, and can deliver multiple payloads such as a reverse SSH backdoor.
Ask AI about this cluster
Answers cite the sources they use
Updated 212d ago How this analysis works
Timeline
2026-03-05
Trend Micro reports on BoryptGrab malware campaign
2026-03-06
Broadcom publishes article on BoryptGrab threat
More articles in this cluster (10)
Following this threat?
Track BoryptGrab in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Malicious LastPass Repositories Distribute Rapuncel Infostealer via GitHub A campaign impersonating LastPass has been identified, distributing the Rapuncel infostealer through fake GitHub repositories. Users searching for 'LastPass Authenticator download' are misled into downloading malicious software that masquerades as legitimate. The malware is capable of stealing sensitive information…
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…