May 2025 Infostealer Trend Report
This analysis examines the distribution trends of Infostealer malware in May 2025. It highlights the use of SEO poisoning to distribute malware disguised as cracks and keygens. LummaC2, Vidar, StealC, Rhadamanthys, and Amadey were the main Infostealers observed. Distribution methods included posts on legitimate websites, forums, and Q&A pages. Malware was primarily distributed in EXE format (95.4%), with a decrease in DLL-SideLoading (4.6%). Notable trends include the emergence of BAT script malware, use of the Wormhole file-sharing service for distribution, and the use of Unicode characters in compression passwords to bypass security measures. The report provides insights into distribution volumes, methods, and disguises based on data collected and analyzed by advanced security systems.
Pulse ID: 6852fb64cea8285f2988ba8b
Pulse Link: https://otx.alienvault.com/pulse/6852fb64cea8285f2988ba8b
Pulse Author: AlienVault
Created: 2025-06-18 17:46:12
Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Amadey #CyberSecurity #FileSharing #InfoSec #InfoStealer #LummaC2 #Mac #Malware #OTX #OpenThreatExchange #Password #Passwords #Rhadamanthys #SEOPoisoning #SideLoading #Stealc #Vidar #Word #Worm #bot #AlienVault