StealC Malware Control Panel Flaw Exposes Attacker Details
Article Content
Browse articles
Researchers identified an XSS vulnerability in the control panel of StealC malware, which has been operational since at least 2023. This infostealer, sold as Malware-as-a-Service, allows attackers to steal sensitive information like cookies and passwords. The flaw has led to the exposure of key details about the threat actor behind the malware.
Ask AI about this cluster
Answers cite the sources they use
Updated 212d ago How this analysis works
More articles in this cluster (2)
Following this threat?
Track StealC and StealC Infrastructure in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
AI-Assisted Phishing Targets Taiwan Research Institutions An advanced persistent threat (APT) spear-phishing campaign has been identified targeting individuals affiliated with Taiwan research organizations. The campaign utilized AI-assisted content generation to create highly personalized phishing emails that impersonated reputable academic and policy institutions. Attack…
FakeGit Malware Campaign Resurfaces with 17,610 Malicious Repositories The FakeGit malware campaign has reactivated, distributing SmartLoader malware via over 17,610 fake repositories on GitHub. This resurgence, noted by researchers from Apiiro, began on October 4, 2026, and has already seen the creation of more than 13,000 repositories in just 34 hours. The malicious repositories employ…