logo

New SilabRAT Trojan Hijacks Sessions to Steal Crypto

ID: 430cf52b-26af-5ecc-8ac1-9472d28fe08e

STIX ID: report--430cf52b-26af-5ecc-8ac1-9472d28fe08e

Feed Name: Infosecurity Magazine (News)

Threat Score
78/100

Date Published: 2026-06-10

Date Updated: 2026-06-11

...
...

SilabRAT is a MaaS remote-access trojan designed to drain cryptocurrency by hijacking live browser sessions using hidden VNC and full browser-profile cloning; it also includes clipboard clippers, keystroke logging, COM-elevation to bypass Chrome protections, and persistence mechanisms. Advertised since late 2025 and sold for subscription fees, operators distribute it via spam and social engineering, and defenders are warned that session hijacking can bypass passwords and MFA.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.