Summary
- Zscaler discovered a new information stealer called Statc Stealer.
- Statc Stealer is a sophisticated malware targeting Windows devices to steal sensitive information.
- The malware disguises itself as authentic Google ads (and .mp4 file) to infect systems.
- Stealing capabilities include data from web browsers, crypto wallets, credentials, and messaging apps including Telegram.
- Statc Stealer uses C++ code, evasion techniques, and encryption to hide its actions.
- The attack chain involves malvertising, dropper, downloader files, and PowerShell scripts.
- Stolen data is encrypted and sent to a command-and-control (C&C) server.
- Popular Windows browsers like Chrome, Edge, Brave, and others are targeted.
- Dee ( @Dee@lemmings.world ) 35•1 year ago
The malware disguises itself as authentic Google ads
Let this be yet another reminder that you should always browse with some kind of AdBlock enabled.
- Haui ( @Haui@discuss.tchncs.de ) English6•1 year ago
No block, go watch ad!
Google probably while DRMing the web.
- Chris Remington ( @remington@beehaw.org ) English6•1 year ago
In 2008 I went mac and never turned back. Please, don’t tell me about the rare invulnerability of OS X. I get that…I have had zero problems for 15 years. That’s right! No problems at all. Up until 2008, as a Windows user, it was every fucking day.
- SenorBolsa ( @SenorBolsa@beehaw.org ) English5•1 year ago
I’ve only gotten malware on windows once, and I was doing something pretty dodgy “downloading linux ISOs” while half asleep. But it requires some effort to stay away from and on mac you almost don’t have to think about it.
Macs do literally nothing I need a computer to do aside from web browsing, so I never got into them, always opting for thinkpads with windows or linux on them for my work machines and desktops with windows for gaming. If they fit your use case they are amazing though.