Meduza Stealer
- First seen
- 2023-03-10 00:00:00
- Malware type
- credential-stealer
- Family
- Malware family
- Last IoC activity
- 2026-07-22 01:55:25
- Profile updated
- 2026-07-07 14:42:29
Targeted industries: financial-services technology-and-telecommunications retail-and-hospitality
Context
Meduza Stealer is a malware family specialized in stealing credentials from infected systems. It targets financial services and technology sectors to harvest sensitive information.
Exploited vulnerabilities
- CVE-2024-21412 (vulnerability)
Reports & references
- fortinet.com — Exploiting Cve 2024 21412 Stealer Campaign Unleashed (report)
- insights.bridewell.com — Cyber%20Threat%20Intelligence%20Report%202025 (report)
- zerofox.com — The Underground Economist Volume 3 Issue 12 (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Meduza (report)
- g0njxa.medium.com — Approaching Stealers Devs A Brief Interview With Meduza F1Bbd2Efb84F (report)
- CERT-UA — 6276652 (report)
- russianpanda.com — Meduza Stealer Or The Return Of The Infamous Aurora Stealer (report)