
ACR Stealer Uses MSHTA and Steganographic JPEGs for Fileless Credential Theft
From late April through mid-June 202620262026, Microsoft Defender Experts observed the malware targeting browser passwords, cookies, authentication tokens, and sensitive documents. A successful infection could allow attackers to hijack accounts, access cloud services, and launch further activity within an organization. ACR Stealer, reportedly sold as malware-as-a-service and linked to the rebranded Amatera Stealer, appeared in […]
The post ACR Stealer Uses MSHTA and Steganographic JPEGs for Fileless Credential Theft appeared first on Cyber Security News.