logo

GC01 (Golden Chickens): Inside the Arsenal of a Premier E-Crime MaaS Provider

ID: f0ed47c0-91a5-54a2-bddc-c63c3bf7acfa

STIX ID: report--f0ed47c0-91a5-54a2-bddc-c63c3bf7acfa

Feed Name: Brandefense Blog

Threat Score
78/100

Date Published: 2026-04-16

Date Updated: 2026-04-27

Author: BRANDEFENSE

...
...

**GC01 (Golden Chickens) MaaS profile:** This report profiles Golden Chickens (GC01) as a financially motivated Malware-as-a-Service provider (not a state APT) that supplies loaders (VenomLNK/TerraLoader), a JavaScript backdoor (more_eggs), information stealers (TerraStealerV2), keylogger (TerraLogger) and support modules to criminal groups, using HR-targeted spear-phishing, malicious LNKs, living-off-the-land and fileless techniques to enable ransomware, POS intrusions, credential theft and corporate extortion; it includes mitigation advice such as hardening HR email handling, restricting script execution, monitoring LotL binaries and blocking .LNKs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.