New Windows Stealer Uses AI Profiling to Identify High-Value Corporate Victims
ID: 5faffe7c-c421-5757-8c35-4cb5e4d61702
STIX ID: report--5faffe7c-c421-5757-8c35-4cb5e4d61702
Feed Name: GBHackers
Dolphin X is a Windows-focused infostealer and remote access trojan offered on cybercrime forums as an enterprise-oriented data vacuum with AI-driven victim scoring; it supports hundreds of credential targets (browsers, wallets, password managers, .env files, SSH keys, cloud CLI tokens) and exposes a remote-build backend that can mutate binaries to evade detection. Varonis obtained and analyzed the operator panel, documenting a three-tier mutation engine, AI profiler for automated triage of high-value developer/DevOps workstations, HVNC indicators, and provided IOCs including the vendor backend domain and a SHA-256 hash for the operator client.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
