Gremlin

Malware type
credential-stealer, spyware, keylogger
Family
Malware family
Last IoC activity
2026-06-03 11:49:04
Profile updated
2026-07-07 15:04:29

Targeted industries: financial-services technology-and-telecommunications retail-and-hospitality

Context

This information-stealing malware exfiltrates data from its victims and uploads this information to its web server for publication. It can capture data from browsers, the clipboard and the local disk to steal sensitive data such as credit card details, browser cookies, crypto wallet information, File Transfer Protocol (FTP) and virtual private network (VPN) credentials.

Reports & references

  • malpedia.caad.fkie.fraunhofer.de — Win.Gremlin (report)
  • Palo Alto Unit 42 — New Malware Gremlin Stealer For Sale On Telegram (report)

External references