ThreatCluster

Lucid Stealer Malware Targets 18 Browsers and Crypto Wallets

First seen 8 Jun 2026, 15:49 UTC GbhackersCybersecuritynews 80% similarity 66

Article Content

Browse articles
ThreatCluster

A new variant of the Lucid Stealer malware has been identified, capable of targeting 18 different browsers, cryptocurrency wallets, and Discord tokens. This malware, which functions as both an information stealer and a remote access Trojan (RAT), is distributed through Telegram-linked underground channels. Unlike typical malware, it is packaged as a legitimate Node.js Single Executable Application (SEA), making detection challenging. Cybersecurity experts warn that it can gain full control over infected machines, significantly increasing the risk of data theft. The malware's capabilities extend beyond simple credential theft, indicating a sophisticated threat landscape. Current reports suggest that the malware is actively being disseminated, raising alarms among security professionals. Organizations using affected browsers and wallets are advised to enhance their security measures.

Key Points: • Lucid Stealer targets 18 browsers and crypto wallets, posing a significant threat. • The malware is distributed via Telegram, packaged as a legitimate Node.js application. • It can take full control of infected machines, indicating advanced capabilities.

ThreatCluster AI

Timeline

2026-06-08
Lucid Stealer malware identified
A new variant of Lucid Stealer was discovered, targeting multiple browsers and crypto wallets, raising security concerns.
Gbhackers
2026-06-08
Malware distribution method revealed
The malware is being distributed through underground channels linked to Telegram, complicating detection efforts.
Cybersecuritynews

Community

Browse all →

Tracked Entities in This Story