⚠
Skuld
stealer1 mutex signatures
[BASIC_INFORMATION]
FAMILY_NAME:
Skuld
CATEGORY:
STEALER
DESCRIPTION:
Skuld is a customized stealer malware that specifically targets cryptocurrency wallets and sensitive data. It's delivered through sophisticated multi-stage attack campaigns that exploit hijacked Discord invite links and use the ClickFix phishing technique. The malware is part of a broader operation that combines time-based evasions and trusted cloud services (GitHub, Bitbucket, Pastebin, Discord) for payload delivery and data exfiltration to avoid detection by security tools.
ALIASES:
Skuld Stealer
TAGS:
crypto_stealerdiscord_deliverymulti_stageclickfix_phishingcloud_servicesevasion_techniqueswallet_targeting
[MUTEX_SIGNATURES](1)
[MUTEX_01]
global\3575651c-bb47-448e-a514-22865732bbc
ANALYST: @adhikara13 DATE: 2025-01-15
[QUICK_ACTIONS]
[THREAT_INTELLIGENCE]
ATTRIBUTION:
⚠Unknown
FIRST_OBSERVED:
2025
[SIGMA_RULE]
[STATISTICS]
MUTEX_COUNT:1
THREAT_ACTORS:1
ALIASES:1
TAGS:7
CATEGORY:STEALER
Malware profile loaded successfully