CStealer Trojan
CStealer is a newly observed information-stealing trojan targeting the Google Chrome web browser.
Summary
CStealer is a newly observed information-stealing trojan targeting the Google Chrome web browser.
Affected platforms
The following platforms are known to be affected:
Threat details
At the time of publication, it is unclear how CStealer is delivered, although there are unconfirmed reports indicating it may be distributed via spam campaigns.
Once delivered, CStealer will attempt to extract account credentials from Chrome's built-in password manager. These are then sent to a MongoDB database for retrieval by CStealer's operators.
Remediation steps
| Type | Step |
|---|---|
|
To prevent and detect a trojan infection, ensure that:
|
Indicators of compromise
Last edited: 29 June 2021 11:57 am