logo

New Glove infostealer malware bypasses Chrome’s cookie encryption

ID: a02b6919-dc73-53ad-b888-f38f47734745

STIX ID: report--a02b6919-dc73-53ad-b888-f38f47734745

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2024-11-14

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

**Executive summary:** Glove Stealer.NET is an active, relatively simple information-stealing malware distributed via phishing (HTML "ClickFix" attachments) that harvests cookies (including from Chromium-based browsers and Firefox), cryptocurrency wallets, 2FA session tokens, and credentials from multiple password managers and email clients; it includes a module that leverages Chrome's IElevator COM service to bypass Chrome's App-Bound cookie encryption but requires local administrative privileges to install.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.