Skip to content

MALICIOUS (1) campaign cataloged at 2024-08-19(2).

  1. The campaign has clearly malicious intent, like infostealers.
  2. This is just the date of creating the catalog entry. It may not reflect the date of creation of the campaign itself.

2024-08-old-threading-assistant

Infostealer exfiltrating cookies, history and passwords from the Google Chrome browser, as well as attempting to do a webcam photo. Data are sent to a Discord webhook. Malicious code is split over multiple files.

Abuse categories

Campaign uses .

infostealer

Activity is typical for information stealers, i.e. by exfiltrate various sensitive data from the victim's environment.

typosquatting

The package name is an typosquatting variant of a popular package.

Packages in the campaign

campaign:2024-08-old-threading-assistant