HYPERSCRAPE
- First seen
- 2021-12-01 00:00:00
- Malware type
- credential-stealer
- Profile updated
- 2026-07-07 15:06:24
Targeted industries: government-and-public-sector media-and-entertainment
Targeted regions: country_code:ir
Context
HYPERSCRAPE is a credential-stealer malware used for targeted phishing campaigns. It primarily targets entities in Iran to exfiltrate sensitive information. The malware is often associated with state-sponsored actors conducting surveillance operations.
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Win.Hyperscrape (report)
- blog.google — New Iranian Apt Data Extraction Tool (report)