logo

New VVS Stealer Malware Targets Discord Users via Fake System Errors

ID: 0ddb2c88-776a-550b-b60e-4216fec5122d

STIX ID: report--0ddb2c88-776a-550b-b60e-4216fec5122d

Feed Name: HackRead

Threat Score
72/100

Date Published: 2026-01-06

Date Updated: 2026-04-22

Author: Deeba Ahmed

...
...

VVS Stealer is a Python-based infostealer actively observed since at least April 2025 that targets Discord and multiple browsers to steal tokens, saved passwords, cookies, autofill data, screenshots and MFA/backup codes; it is delivered as a PyInstaller package, performs Discord injection, exfiltrates stolen data via webhooks, uses Pyarmor for obfuscation, and is marketed as a paid subscription on Telegram with identified operators and an expiration of October 31, 2026.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.