cognitive cybersecurity intelligence

News and Analysis

Search

New EDDIESTEALER Malware Bypasses Chrome’s App-Bound Encryption to Steal Browser Data

New EDDIESTEALER Malware Bypasses Chrome’s App-Bound Encryption to Steal Browser Data

A novel Rust-based information stealer named EDDIESTEALER is being spread via a malware campaign that uses the ClickFix social engineering tactic. Initiated through fake CAPTCHA verification pages, it prompts users to a series of actions which executes a malicious script harvesting sensitive data. The campaign begins with threat actors compromising legitimate websites with malicious JavaScript payloads. EDDIESTEALER, written in Rust, can collect system data and exfiltrate it to a command-and-control (C2) server.

Source: thehackernews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts