news.mlab.sh
Back to the feed
malware

Gremlin Stealer's Evolved Tactics: Hiding in Plain Sight With Resource Files

High
Image: Palo Alto Unit 42
Summary

This report details the evolving tactics of the Gremlin stealer malware, specifically a recent variant employing sophisticated obfuscation techniques to evade detection. The malware, which targets sensitive data like payment card details and cryptocurrency wallets, utilizes instruction virtualization and .NET resource section packing to hide its malicious payload and evade traditional analysis methods. The threat actors behind this variant are increasingly focused on active financial fraud and session hijacking, demonstrating a significant evolution in the malware's capabilities.

Read the full article at Palo Alto Unit 42

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Report an error
Confirmed errors are fixed and listed on /corrections.