Vidar 2.0 Malware — Analysis, Campaigns & Threat Activity

Threat entity extracted from intelligence sources

Frequency
3
occurrences
First Seen
January 15, 2026
Last Seen
March 18, 2026

Vidar 2.0 is a malware family tracked across 2 threat clusters and 3 intelligence report mentions on ThreatCluster. First observed January 15, 2026; most recent activity March 18, 2026.

Overview

Vidar 2.0 is an evolved data-stealing malware family (Vidar lineage) focused on harvesting credentials, payment card data, and other sensitive information from infected hosts. As a loader-driven threat, it is typically delivered via multi-stage payloads and updates, making it a persistent concern for enterprise security due to its modular design and ongoing evolution.

Related Threat Clusters

  • Vidar Stealer 2.0 Spreads via Fake Game Cheats on GitHub and Reddit

    Acronis Threat Research Unit reported that the Vidar Stealer 2.0 is being distributed through hundreds of fake game cheat repositories on GitHub and targeted posts on Reddit. The malware masquerades as free cheating…

    3 articles · Updated March 18, 2026
  • Surge in BaoLoader Malware Campaigns Reported by ReliaQuest

    ReliaQuest has reported an increase in malware campaigns utilizing manufactured trust and user interaction, with a notable rise in incidents involving the BaoLoader malware. The company identified spearphishing links,…

    2 articles · Updated January 15, 2026

Recent Intelligence Reports

  • Vidar 2.0 malware campaign targets gamers for crypto and account theft | brief — Scworld · March 18, 2026
  • ReliaQuest warns of BaoLoader surge & trust attacks — Securitybrief · January 15, 2026
  • ReliaQuest warns of BaoLoader surge & trust attacks — Securitybrief.Au · January 15, 2026

CVSS v3.1 Breakdown