Recordedfuture
Golden Chickens Unveils Four New Modular Malware Families Targeting Chrome Credentials
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
TAG-195, also known as Golden Chickens or Venom Spider, has launched four new malware families: TinyEgg, ChonkyChicken, a modular variant of ChonkyChicken, and ChromEggscalator. These families are designed to enhance credential theft and browser session hijacking capabilities. The malware utilizes ClickFix-style lures to trick victims into executing malicious commands. TinyEgg serves as a lightweight backdoor, while ChonkyChicken expands functionality to include browser credential theft and network reconnaissance. The modular architecture allows for selective provisioning of capabilities, reducing detection risks. Insikt Group has linked TAG-195 to previous operations and warns defenders to prioritize detection of specific execution chains and unusual communications. The malware primarily targets Windows systems.
Key Points: • TAG-195 has launched four new malware families aimed at credential theft and browser hijacking. • The malware employs ClickFix-style lures to trick users into executing malicious commands. • Defenders are advised to focus on detecting specific execution patterns and unusual network communications.