[ALL_FAMILIES]

Skuld

stealer1 mutex signatures

[BASIC_INFORMATION]

FAMILY_NAME:
Skuld
CATEGORY:
STEALER
DESCRIPTION:
Skuld is a customized stealer malware that specifically targets cryptocurrency wallets and sensitive data. It's delivered through sophisticated multi-stage attack campaigns that exploit hijacked Discord invite links and use the ClickFix phishing technique. The malware is part of a broader operation that combines time-based evasions and trusted cloud services (GitHub, Bitbucket, Pastebin, Discord) for payload delivery and data exfiltration to avoid detection by security tools.
ALIASES:
Skuld Stealer
TAGS:
crypto_stealerdiscord_deliverymulti_stageclickfix_phishingcloud_servicesevasion_techniqueswallet_targeting

[QUICK_ACTIONS]

[THREAT_INTELLIGENCE]

ATTRIBUTION:
Unknown
FIRST_OBSERVED:
2025

[SIGMA_RULE]

[STATISTICS]

MUTEX_COUNT:1
THREAT_ACTORS:1
ALIASES:1
TAGS:7
CATEGORY:STEALER
Malware profile loaded successfully

EvilMutex Project v1.0.0

Open Source Threat Intelligence Database