Punto Informatico: Infostealer per Claude: Anthropic rimuove i dati di pagamento
Anthropic ha rilevato accessi non autorizzati agli account Claude effettuati tramite infostealer, avvisato gli utenti e rimosso i metodi di pagamento.
The post Infostealer per Claude: Anthropic rimuove i dati di pagamento appeared first on Punto Informatico.
Info-stealer for Claude: Anthropic removes payment data.
Anthropic has detected unauthorized access to Claude accounts made through infostealers, notified users and removed payment methods.
The post Infostealer for Claude: Anthropic removes payment data appeared first on Punto Informatico.
#Infostealer #first #PuntoInformatico
https://www.punto-informatico.it/infostealer-claude-anthropic-rimuove-dati-pagamento/
About This Hashtag
#infostealer
25 posts
Last used 20d
#infostealer
25 posts· Last used 20d
Zero to owned: Credential stealer to corporate breach
The breach doesn't start with your infrastructure. It starts on a device you don't control. One dataset of 15 million infostealer logs held 687 million cookies, 43.87 million of them still active session tokens that hand over an account without ever tripping MFA. Your second factor doesn't matter if the attacker inherits the session.
https://darkwiser.com/blog/zero-to-owned-mapping-the-lifecycle-of-a-credential-stealer-to-corporate-breach
#Infostealer #SessionHijacking #MFA #CredentialTheft #dark_web
AgentBaiting – nowa technika ataku zaobserwowana w kampanii FakeGit https://sekurak.pl/agentbaiting-nowa-technika-ataku-zaobserwowana-w-kampanii-fakegit/ #Wbiegu #Agentbaiting #Ai #Fakegit #Infostealer #Stealc
AgentBaiting – nowa technika ataku zaobserwowana w kampanii FakeGit
Badacze bezpieczeństwa z firmy Island wzięli na warsztat kampanię cyberprzestępczą, znaną pod kryptonimem FakeGit. W ramach prac wykryto około 7600 złośliwych repozytoriów, z czego ponad 800 podszywało się pod rozszerzenia AI lub serwery MCP. Oferowały one zarówno integracje dla użytkowników prywatnych (Gmail, WhatsApp), jak i narzędzia firmowe (Databricks, Jenkins, Docker). ...
#WBiegu #AgentBaiting #Ai #Fakegit #Infostealer #Stealc
https://sekurak.pl/agentbaiting-nowa-technika-ataku-zaobserwowana-w-kampanii-fakegit/
Malwarebytes finds fake games spreading Amatera Stealer through RenPy Loader, MSBuild abuse, and EtherHiding C2. See the infection chain and defenses.
#RenPyLoader #AmateraStealer #EtherHiding #MSBuild #Infostealer #Malware #GamingSecurity #Malwarebytes
https://securityonline.info/renpy-loader-amatera-stealer/?utm_source=mastodon&utm_medium=jetpack_social
Proofpoint details the Cruciferra crypter service that cloaks RATs and infostealers using BYOVD EDR tampering and 90+ custom encryption routines.
#Cruciferra #Crypter #MaaS #BYOVD #ProcessGhosting #Infostealer #RAT #Proofpoint
https://securityonline.info/cruciferra-crypter-service/?utm_source=mastodon&utm_medium=jetpack_social
Microsoft warns of rising ACR Stealer attacks using ClickFix lures to steal browser credentials and tokens from enterprises. Two chains detailed.
#ACRStealer #ClickFix #Infostealer #Malware #Cybersecurity
http://securityonline.info/acr-stealer-clickfix/?utm_source=mastodon&utm_medium=jetpack_social
BusySnake – stealer atakujący cele o znaczeniu krytycznym w Rosji. Za kampanię odpowiada grupa APT Armored Likho https://sekurak.pl/busysnake-stealer-atakujacy-cele-o-znaczeniu-krytycznym-w-rosji-za-kampanie-odpowiada-grupa-apt-armored-likho/ #Aktualnoci #Apt #Infostealer #Phishing #Rosja
BusySnake – stealer atakujący cele o znaczeniu krytycznym w Rosji. Za kampanię odpowiada grupa APT Armored Likho
Badacze bezpieczeństwa za pośrednictwem portalu Securelist poinformowali o wykryciu nowej kampanii phishingowej powiązanej z nieznaną dotąd grupą APT (nazwaną przez analityków Armored Likho). Wszelkie poszlaki wskazują, że grupa ta jest również znana pod nazwą Eagle Werewolf. Jej celem są przede wszystkim instytucje rządowe oraz przedsiębiorstwa z sektora krytycznego w Rosji,...
#Aktualności #Apt #Infostealer #Phishing #Rosja
https://sekurak.pl/busysnake-stealer-atakujacy-cele-o-znaczeniu-krytycznym-w-rosji-za-kampanie-odpowiada-grupa-apt-armored-likho/
ClickLock Stealer: New macOS Malware Hijacks Desktop
🔗 https://cybersecurefox.com/en/clicklock-stealer-macos-infostealer
#clicklock #stealer #macos #malware #macos #infostealer #group-ib #clickfix
🤖 Microsoft warns of surge in ACR Stealer attacks: infostealer targets browser-stored passwords, auth tokens, and sensitive documents from enterprise environments. Active campaigns observed.
🔗 https://www.bleepingcomputer.com/news/security/microsoft-warns-of-surge-in-acr-stealer-attacks-on-customers/
#Malware #Infostealer #CyberSec
🤖 Microsoft warns of surge in ACR Stealer attacks targeting enterprise customers. Malware steals browser-stored passwords, auth tokens, and sensitive documents. Active campaign observed.
🔗 https://www.bleepingcomputer.com/news/security/microsoft-warns-of-surge-in-acr-stealer-attacks-on-customers/
#Malware #InfoStealer #CyberSec
Meet CrashStealer. This one takes delivery more seriously than most, a signed and Apple-notarized dropper that's pulling its second stage payload down through GitHub.
The payload is a native C++ stealer with client-side AES-GCM encryption and layered anti-analysis.
Check out our writeup for additional details and indicators of compromise.
https://www.jamf.com/blog/crashstealer-macos-infostealer-analysis/
#infostealer #malware #macos #threatresearch
Arctic Wolf found 292 fake GitHub repositories impersonating software vendors to deliver a BoryptGrab-lineage infostealer via DLL side-loading.
#GitHub #BoryptGrab #Infostealer #Malware #ArcticWolf
http://securityonline.info/fake-github-repositories-boryptgrab/?utm_source=mastodon&utm_medium=jetpack_social
🤖 AsyncAPI npm packages compromised in supply-chain attack. Five malicious versions of @asyncapi/* packages published to npm, delivering a RAT with credential-stealing capabilities.
🔗 https://www.bleepingcomputer.com/news/security/-asyncapi-npm-packages-infected-with-credential-stealing-malware/
#SupplyChain #Malware #InfoStealer #CyberSec
A malicious Go module exposed a GitHub lure network of 222 repositories, dubbed Operation Muck and Load, staging RATs and infostealers.
#GoModule #SupplyChain #GitHub #Malware #InfoStealer #AsyncRAT #DevSecOps #InfoSec
https://securityonline.info/malicious-go-module-lure-network/?utm_source=mastodon&utm_medium=jetpack_social
🤖 Compromised jscrambler 8.14.0 npm release drops a Rust infostealer during install. The malicious preinstall hook executes a native binary on Windows, macOS, and Linux. Socket's security scanner flagged the release within 6 minutes of publication.
🔗 https://thehackernews.com/2026/07/compromised-jscrambler-8140-npm-release.html
#SupplyChain #Infostealer #npm #CyberSec
🤖 Supply chain attack: jscrambler 8.14.0 npm package compromised. Installing it runs a Rust infostealer via a preinstall hook — native binaries for Windows, macOS, and Linux. Socket detected the threat within 6 minutes.
🔗 https://thehackernews.com/2026/07/compromised-jscrambler-8140-npm-release.html
#SupplyChain #Infostealer #CyberSec