Infostealers Extorting Web Browser Account Credentials Detected by AhnLab EDR
ID: b8b734d9-1fd5-5b37-ab37-6089d2dc0634
STIX ID: report--b8b734d9-1fd5-5b37-ab37-6089d2dc0634
Feed Name: ASEC
Threat Score
AhnLab describes how infostealer malware—both commodity families like AgentTesla and custom APT tools (e.g., an Andariel-created stealer)—target credentials stored by web browsers, extract and exfiltrate them (SMTP/FTP/Telegram/C2), and enable further intrusion and lateral movement; the report highlights detection examples and recommends using AhnLab EDR to identify and respond to these credential-access behaviors.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
