SYS01 Stealer
Summary
The malware, named Sys01 Stealer, is being distributed through Google advertisements and fake Facebook accounts that promote adult content, games, and cracked software. The danger posed by these types of malware is significant as the threats are specifically designed to steal sensitive information and can bypass certain security measures. The malwares primary objective is to exfiltrate sensitive information such as login credentials, cookies, and Facebook ad and business account data from its victims. The main script, which carries the information-stealing functionality, has multiple capabilities, including the ability to check if the victim has a Facebook account and is logged in. It is strongly recommended that organizations should implement a zero-trust policy and restrict users rights to download and install programs to prevent infections by threats like the Sys01 Stealer.