MINT STEALER: Running by a BulletProof Hoster
ID: c61cd7c2-f508-5eba-8bd0-4d71f6a96b75
STIX ID: report--c61cd7c2-f508-5eba-8bd0-4d71f6a96b75
Feed Name: THE RAVEN FILE
This research article documents Mint Stealer — a commodity infostealer sold on underground forums and supported by a Russian-associated actor operating bulletproof hosting and cashout services. The report covers Mint Stealer's capabilities (credential, cookie, crypto wallet and FTP/SSH theft), distribution filenames and phishing vectors, sample hashes and domains, exposed infrastructure and IPs, actor attribution to a Telegram handle 'Artem', related offensive services (RAT, ransomware, hosting), and a short shallow code/log analysis with multiple IOCs for detection and blocking.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
