42
submitted 1 year ago* (last edited 1 year ago) by Raisin8659@monyet.cc to c/technology@beehaw.org

Summary

  • Zscaler discovered a new information stealer called Statc Stealer.
  • Statc Stealer is a sophisticated malware targeting Windows devices to steal sensitive information.
  • The malware disguises itself as authentic Google ads (and .mp4 file) to infect systems.
  • Stealing capabilities include data from web browsers, crypto wallets, credentials, and messaging apps including Telegram.
  • Statc Stealer uses C++ code, evasion techniques, and encryption to hide its actions.
  • The attack chain involves malvertising, dropper, downloader files, and PowerShell scripts.
  • Stolen data is encrypted and sent to a command-and-control (C&C) server.
  • Popular Windows browsers like Chrome, Edge, Brave, and others are targeted.
you are viewing a single comment's thread
view the rest of the comments
[-] Raisin8659@monyet.cc 4 points 1 year ago* (last edited 1 year ago)

You don't need admin access to do a lot of damage on a windows system. From the user space, a malware can:

  1. Exfiltrate files
  2. Read memory of other processes
  3. Read all user credentials from the credential store, including from TPM
  4. If the malware can fool the user to authenticate using Windows Hello, even the password managers that store encrypted secrets in credential stores aren't safe:

See this same class of malware at (unfortunate link, but you can see the detailed discussions there): https://www.reddit.com/r/Bitwarden/comments/14r29p6/meduza_stealer_will_steal_on_windows_browser/

this post was submitted on 11 Aug 2023
42 points (97.7% liked)

Technology

37702 readers
603 users here now

A nice place to discuss rumors, happenings, innovations, and challenges in the technology sphere. We also welcome discussions on the intersections of technology and society. If it’s technological news or discussion of technology, it probably belongs here.

Remember the overriding ethos on Beehaw: Be(e) Nice. Each user you encounter here is a person, and should be treated with kindness (even if they’re wrong, or use a Linux distro you don’t like). Personal attacks will not be tolerated.

Subcommunities on Beehaw:


This community's icon was made by Aaron Schneider, under the CC-BY-NC-SA 4.0 license.

founded 2 years ago
MODERATORS