New Glove infostealer malware bypasses Chrome’s cookie encryption
ID: a02b6919-dc73-53ad-b888-f38f47734745
STIX ID: report--a02b6919-dc73-53ad-b888-f38f47734745
Feed Name: Bleeping Computer
**Executive summary:** Glove Stealer.NET is an active, relatively simple information-stealing malware distributed via phishing (HTML "ClickFix" attachments) that harvests cookies (including from Chromium-based browsers and Firefox), cryptocurrency wallets, 2FA session tokens, and credentials from multiple password managers and email clients; it includes a module that leverages Chrome's IElevator COM service to bypass Chrome's App-Bound cookie encryption but requires local administrative privileges to install.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
