Skip to content

Infostealer

StealthWorker Go

According to Fortinet, StealthWorker is a brute-force malware that has been linked to a compromised e-commerce website with an embedded skimmer that steals personal information and payment details.

StealthWorker Go is a Windows infostealer.

Background

Fortinet characterizes StealthWorker as brute-force malware that has been tied to a compromised e-commerce site carrying an embedded skimmer that captures personal data and payment details. Planting such a skimmer, however, first requires attackers to reach the target's backend. They typically do this by exploiting weaknesses in the Content Management System (CMS) or its plugins, or alternatively by resorting to brute-force attacks. While slower, brute forcing remains effective against administrators who rely on weak or commonly used passwords.


Source: Malpedia (Fraunhofer FKIE).