Malware · 139 giorni fa
REMUS non è più solo un password stealer. Il suo vero valore è il furto di sessione e token, che consente agli attaccanti di continuare a usare gli account dopo un reset o un cambio MFA e trasforma un singolo browser infetto in accesso duraturo su SaaS, email e altri servizi basati su sessione.
1 fonte che coprono questa storia
Inside the REMUS Infostealer: Session Theft, MaaS, and Rapid Evolution
Flare explains how the REMUS infostealer evolved around session theft and operational scalability.
Part of the PlainSec briefing for 2026-05-16