logo

Detecting and Fingerprinting Infostealer Malware-as-a-Service platforms

ID: a8f8eca5-4e72-585d-a07f-1f30c6c07e80

STIX ID: report--a8f8eca5-4e72-585d-a07f-1f30c6c07e80

Feed Name: BushidoToken Blog

Threat Score
70/100

Date Published: 2022-11-26

Date Updated: 2026-06-11

...
...

Using Shodan search techniques the author identified dozens of infostealer control panels and three apparently unreported families (Titan, Patriot, RAXNET) plus known families (Misha, Collector); the report catalogs MaaS features (password/cookie/private key theft, AV-bypass, reporting via webhooks), infrastructure and IoCs (Shodan dorks, urlscan results, Telegram channels, YouTube), and warns that these commercially available tools lower the barrier for large-scale credential and cryptocurrency theft.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.