logo

Agniane Stealer

ID: ab9cc2c8-b49d-55d7-8f85-beaa7b5470b9

STIX ID: report--ab9cc2c8-b49d-55d7-8f85-beaa7b5470b9

Feed Name: Zscaler Security Research Blog

Threat Score
75/100

Date Published: 2025-12-30

Date Updated: 2026-05-01

...
...

Agniane Stealer is an obfuscated .NET information-stealer that harvests browser credentials and cookies, messaging and gaming session tokens (Telegram, Steam, Discord), FTP/SSH credentials (FileZilla, WinSCP), system and WMI-derived telemetry, screenshots, and cryptocurrency wallet/clipboard data, then uploads the aggregated data to a remote C2 endpoint before removing local traces; recent variants use ConfuserEx and dynamically load DLLs to evade detection.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.