logo

Vidar Stealer Under the Lens: A Deep-dive Analysis

ID: 445d8ffc-2d47-56e2-8e1e-d8836dac6271

STIX ID: report--445d8ffc-2d47-56e2-8e1e-d8836dac6271

Feed Name: Cyble Blog

Threat Score
70/100

Date Published: 2021-10-26

Date Updated: 2026-07-17

...
...

This Cyble Research Labs report performs a technical analysis of the Vidar stealer malware: describing how it is delivered (spam, pirated software, keygens), how it unpacks and retrieves C2 information via a mas.to channel, the types of data exfiltrated (saved credentials, cookies, browser history, crypto-wallets), downloaded modules used for credential harvesting, observed IoCs (SHA-256, C2 IPs, channel ID), MITRE ATT&CK technique mappings, and recommended defensive measures.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.