1 / 3
This threat actor has started using @github.com to host the PowerShell downloaders making it fairly trivial to find accounts hosting a copy of Vidar Stealer. Some have low, and some have high VT hits. www.virustotal.com/gui/file/f9d... www.virustotal.com/gui/file/847...
4 likes 0 replies
?