Frequency
1
occurrences
First Seen
January 5, 2026
Last Seen
January 5, 2026
VVS Stealer is a data-stealing malware family that is obfuscated with PyArmor to hinder analysis.
Overview
VVS Stealer is a data-stealing malware family that is obfuscated with PyArmor to hinder analysis. It focuses on harvesting Discord data (such as tokens) and browser data (credentials, cookies, autofill), highlighting its emphasis on credential access and session data. The PyArmor obfuscation indicates an effort to evade detection and complicate reverse engineering.
Related Threat Clusters
-
VVS Stealer Malware Targets Discord Accounts with Python Code
VVS Stealer is a Python-based malware designed to steal Discord credentials and tokens. It has been available for purchase on Telegram since at least April 2025, posing a risk to Discord users. Palo Alto Networks…
7 articles · Updated January 5, 2026
Recent Intelligence Reports
- Pyarmor-obfuscated VVS Stealer targets Discord, browser data — Scworld · January 5, 2026