Epsilon Stealer

First seen
2023-01-15 00:00:00
Malware type
credential-stealer, spyware
Last IoC activity
2026-07-22 01:55:25
Profile updated
2026-07-07 15:00:06

Targeted industries: financial-services technology-and-telecommunications media-and-entertainment

Context

Epsilon Stealer is an information stealer sold as Malware as a Service by a new french actor called "Epsilon". This malware is distributed as a game, mainly on discord, but steals user credentials, crypto wallets, and stored cookies. It evades static detection by being packed with NSIS, which then launches a malicious Electron package.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Epsilon Stealer (report)
  • web.archive.org — B258F04B9Caf1F00527A7190C7Ed00Ad17Ce96B1 (report)
  • github.com — Epsilon Stealer (report)

External references