logo

Researchers Exploit Bug in StealC Infostealer to Collect Evidence

ID: a047aaa8-fdf1-58ff-aa1c-6a9787f24241

STIX ID: report--a047aaa8-fdf1-58ff-aa1c-6a9787f24241

Feed Name: Infosecurity Magazine (News)

Threat Score
72/100

Date Published: 2026-01-19

Date Updated: 2026-04-22

...
...

Researchers exploited an XSS flaw in the StealC infostealer's web panel to retrieve session cookies and operational data, enabling attribution of a StealC operator ('YouTubeTA') responsible for stealing about 390,000 passwords and over 30 million cookies; the analysis revealed device, language, timezone and ISP details and highlights risks introduced by the malware-as-a-service model and poor attacker infrastructure security.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.