CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

StealC and Amadey: Breaking down infostealers and the cybercrime services that deliver them

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 332

As cited

Copy frozen at (site build).

ransomware

StealC and Amadey: Breaking down infostealers and the cybercrime services that deliver them

Microsoft and Europol disrupted the infrastructure of StealC, an infostealer malware offered as a service, and Amadey, a malware loader used to deliver StealC and other threats. StealC harvests credentials, cookies, and tokens from browsers and applications, while Amadey enables threat actors to distribute malware at scale. The coordinated action shut down over 200 command-and-control domains and servers that formed the backbone of this cybercriminal ecosystem.

Why it matters: If you manage enterprise networks or endpoints, monitor for Amadey and StealC indicators of compromise, verify employee credentials and session tokens for unauthorized access, and enforce credential hygiene and multifactor authentication controls.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

ransomware

StealC and Amadey: Breaking down infostealers and the cybercrime services that deliver them

Microsoft and Europol disrupted the infrastructure of StealC, an infostealer malware offered as a service, and Amadey, a malware loader used to deliver StealC and other threats. StealC harvests credentials, cookies, and tokens from browsers and applications, while Amadey enables threat actors to distribute malware at scale. The coordinated action shut down over 200 command-and-control domains and servers that formed the backbone of this cybercriminal ecosystem.

Why it matters: If you manage enterprise networks or endpoints, monitor for Amadey and StealC indicators of compromise, verify employee credentials and session tokens for unauthorized access, and enforce credential hygiene and multifactor authentication controls.

VendorsMicrosoft
Actorsplay
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary