TitanStealer
- First seen
- 2023-01-15 00:00:00
- Malware type
- credential-stealer, screen-capture, spyware
- Family
- Malware family
- Last IoC activity
- 2026-07-19 00:05:15
- Profile updated
- 2026-07-07 14:35:07
Targeted industries: financial-services technology-and-telecommunications retail-and-hospitality
Context
The stealer is written in Go and capable of stealing a variety of information from infected Windows machines, including credential data from browsers and crypto wallets, FTP client details, screenshots, system information, and grabbed files.
Reports & references
- denshiyurei.medium.com — Silent Echoes The Hidden Dialogue Among Malware Entities Spotlight On Amos Infostealer 6D7Cd70E3219 (report)
- blog.bushidotoken.net — Detecting And Fingerprinting (report)
- malpedia.caad.fkie.fraunhofer.de — Win.Titan Stealer (report)
- github.com — Titanstealersource (report)
- uptycs.com — Titan Stealer Telegram Malware Campaign (report)