Search This Blog

Monday, November 14, 2016

Unmasking the Bonasira Cyperine Author

Following our research on Cyperine 2.0 and Next Man History Stealer, the malware author rebranded their info stealer as Medusa. While it basically has the same featurse as Cyperine, you now need a valid account to access the builder. The example below compares Cyperine on the left and Medusa on the right, which shows a user logged in as Deadzeye.



Fortinet Blog

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.