Meduza Stealer

First seen
2023-03-10 00:00:00
Malware type
credential-stealer
Family
Malware family
Last IoC activity
2026-07-22 01:55:25
Profile updated
2026-07-07 14:42:29

Targeted industries: financial-services technology-and-telecommunications retail-and-hospitality

Context

Meduza Stealer is a malware family specialized in stealing credentials from infected systems. It targets financial services and technology sectors to harvest sensitive information.

Exploited vulnerabilities

  • CVE-2024-21412 (vulnerability)

Reports & references

  • fortinet.com — Exploiting Cve 2024 21412 Stealer Campaign Unleashed (report)
  • insights.bridewell.com — Cyber%20Threat%20Intelligence%20Report%202025 (report)
  • zerofox.com — The Underground Economist Volume 3 Issue 12 (report)
  • malpedia.caad.fkie.fraunhofer.de — Win.Meduza (report)
  • g0njxa.medium.com — Approaching Stealers Devs A Brief Interview With Meduza F1Bbd2Efb84F (report)
  • CERT-UA — 6276652 (report)
  • russianpanda.com — Meduza Stealer Or The Return Of The Infamous Aurora Stealer (report)

External references