Frequency
2
occurrences
First Seen
September 8, 2026
Last Seen
September 8, 2026
Related Threat Clusters
-
ClearFake WebDAV Infection Chain Targets Ukrainian Government with Amatera Stealer
Cisco Talos reported a widespread credential and cryptocurrency theft operation utilizing the Amatera stealer, identified as being linked to the threat actor UAT-10820. The attack vector involved malicious DLLs executed…
2 articles · Updated September 8, 2026
Recent Intelligence Reports
- Amatera stealer and ZigCryptoStealer among the payloads delivered in recent ClearFake ... — Broadcom · September 8, 2026
- ClearFake WebDAV infection chain delivers Amatera stealer, ZigCryptoStealer, and NetSupport Manager — Blog.Talosintelligence · September 8, 2026