Gremlin
- Malware type
- credential-stealer, spyware, keylogger
- Family
- Malware family
- Last IoC activity
- 2026-06-03 11:49:04
- Profile updated
- 2026-07-07 15:04:29
Targeted industries: financial-services technology-and-telecommunications retail-and-hospitality
Context
This information-stealing malware exfiltrates data from its victims and uploads this information to its web server for publication. It can capture data from browsers, the clipboard and the local disk to steal sensitive data such as credit card details, browser cookies, crypto wallet information, File Transfer Protocol (FTP) and virtual private network (VPN) credentials.
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Gremlin (report)
- Palo Alto Unit 42 — New Malware Gremlin Stealer For Sale On Telegram (report)