New SilabRAT Trojan Hijacks Sessions to Steal Crypto
ID: 430cf52b-26af-5ecc-8ac1-9472d28fe08e
STIX ID: report--430cf52b-26af-5ecc-8ac1-9472d28fe08e
Feed Name: Infosecurity Magazine (News)
SilabRAT is a MaaS remote-access trojan designed to drain cryptocurrency by hijacking live browser sessions using hidden VNC and full browser-profile cloning; it also includes clipboard clippers, keystroke logging, COM-elevation to bypass Chrome protections, and persistence mechanisms. Advertised since late 2025 and sold for subscription fees, operators distribute it via spam and social engineering, and defenders are warned that session hijacking can bypass passwords and MFA.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
