Taurus Stealer
- First seen
- 2020-06-01 00:00:00
- Malware type
- credential-stealer
- Family
- Malware family
- Last IoC activity
- 2026-06-16 10:50:12
- Profile updated
- 2026-07-07 13:47:10
Targeted industries: financial-services technology-and-telecommunications
Context
According to Zscaler, Taurus is a stealer that surfaced in June 2020. It is being developed by the author(s) that previously created Predator the Thief. The name overlaps partly with the StealerOne / Terra* family (also aliased Taurus Loader) but appears to be a completely disjunct project.
Reports & references
- go.recordedfuture.com — Cta 2022 0802 (report)
- secureworks.com — The Growing Threat From Infostealers (report)
- github.com — Analysis.Md (report)
- blog.morphisec.com — Google Ppc Ads Deliver Redline Taurus And Mini Redline Infostealers (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Taurus Stealer (report)
- blog.minerva-labs.com — Taurus Stealers Evolution (report)
- zscaler.com — Taurus New Stealer Town (report)
- outpost24.com — An In Depth Analysis Of The New Taurus Stealer (report)
- blueliv.com — An In Depth Analysis Of The New Taurus Stealer (report)
- aon.com — Agentvx And Taurus (report)