Meduza Stealer is a malware family tracked across 4 threat clusters and 5 intelligence report mentions on ThreatCluster. First observed October 31, 2025; most recent activity May 6, 2026.
Meduza Stealer is a credential-stealing malware family used to exfiltrate data from infected hosts. Recent reports place its developers under arrest in Russia, with the case described as linked to a government hack, highlighting a high-profile law enforcement action against a cybercrime operation.
Malware developers have successfully bypassed Google's App-Bound Encryption (ABE) in Chrome, allowing infostealers like VoidStealer to access sensitive data such as session cookies and credentials. This new method…
Tyler Robert Buchanan, a 24-year-old from Scotland, pleaded guilty in the U.S. to charges of conspiracy to commit wire fraud and aggravated identity theft, linked to a scheme that stole at least $8 million in…
Russian authorities have arrested the developers behind the Meduza Stealer malware-as-a-service (MaaS) operation. This action follows a significant breach attributed to a 'fatal error' made by the group, which has been…
Russian authorities have arrested the developers behind the Meduza Stealer MaaS operation. This crackdown was triggered by a significant error made by the group, which led to the exposure of their activities and…