New Flame Stealer Malware Targeting Users for Credit Card Information Theft

A new malware known as “Flame Stealer” has garnered significant attention in the cybersecurity world, threatening users’ financial and personal information.

Written in C and C++, this advanced malware was first unveiled on Telegram on April 14, 2024. It has since evolved, with claims of being undetectable by standard antivirus software.

Extensive Data Theft Capabilities

Flame Stealer is designed to be a comprehensive data thief, capable of pilfering a wide array of sensitive information. As reported by ThreatMon on Twitter, the malware can steal login details, emails, passwords, credit card information, and PayPal credentials.

🚨 New Malware: Flame Stealer

Flame Stealer, a malware developed in C and C++, was first announced on Telegram on April 14, 2024. This software continues to evolve and claims to be undetectable by traditional antivirus tools.

Features of Flame Stealer:

🔥 Extensive Data… pic.twitter.com/u8gtat6loL
— ThreatMon (@MonThreat) August 1, 2024

The stolen data is immediately sent to a specified webhook or Telegram channel, providing real-time access to cybercriminals. The malware persists on infected systems by automatically re-injecting itself, maintaining its presence as a continuous threat.

Targeting Popular Platforms

One of Flame Stealer’s most concerning features is its ability to target widely used platforms like Discord, Spotify, Instagram, TikTok, and Roblox. It captures login credentials, cookies, passwords, autofill data, and credit card information from these platforms. This broad targeting scope amplifies the risk for users, particularly those who frequently use these services.

Moreover, the malware gathers information about browser extensions, Discord accounts, connections, bots, and servers, further expanding its data theft capabilities.

Flame Stealer employs sophisticated techniques to evade antivirus and security software, making it exceptionally dangerous. It takes screenshots of the user’s desktop and captures visual data at crucial moments, such as when users input sensitive information.

Additionally, it targets digital assets by stealing wallet information and intercepting Two-Factor Authentication (2FA) codes, jeopardizing users’ online security. The malware also collects detailed information about the infected computer, including private accounts and digital entitlements like Fivem accounts.

As Flame Stealer continues to develop and adapt, cybersecurity experts urge users to stay vigilant and take necessary precautions to safeguard their data. Regular updates to security software, cautious online behavior, and awareness of potential threats are vital in mitigating the risks posed by this new malware.

More Articles & Posts