Mystic Stealer
ID: a37be490-7aa9-5af0-86a5-c65ebd581970
STIX ID: report--a37be490-7aa9-5af0-86a5-c65ebd581970
Feed Name: Zscaler Security Research Blog
Technical analysis of Mystic Stealer describing an information‑stealer trojan that collects system and credential data (including browser credentials, Steam/Telegram, and cryptocurrency wallets/extensions and 2FA apps), employs multiple anti‑analysis and evasion techniques (binary expiration, anti‑VM checks, API hashing, polymorphic string obfuscation), uses a custom encrypted TCP C2 protocol, and has recent updates adding loader and persistence capabilities that raise the risk of follow‑on payloads.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
