New VVS Stealer Malware Targets Discord Users via Fake System Errors
ID: 0ddb2c88-776a-550b-b60e-4216fec5122d
STIX ID: report--0ddb2c88-776a-550b-b60e-4216fec5122d
Feed Name: HackRead
Threat Score
VVS Stealer is a Python-based infostealer actively observed since at least April 2025 that targets Discord and multiple browsers to steal tokens, saved passwords, cookies, autofill data, screenshots and MFA/backup codes; it is delivered as a PyInstaller package, performs Discord injection, exfiltrates stolen data via webhooks, uses Pyarmor for obfuscation, and is marketed as a paid subscription on Telegram with identified operators and an expiration of October 31, 2026.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
