Security researchers have discovered a new “sophisticated” stealer malware called NS-STEALER that uses Discord bots to steal sensitive data from compromised systems.

According to an analysis by a Trellix, the malware is spread via files that appear as cracked software to lure users.
The ZIP file contains a Windows shortcut file (“Loader GAYve”), which helps in the deployment of a malicious JAR file. This first creates a folder named “NS-
See also: MacOS info-stealer malware evades detection by XProtect
In this folder, the info-stealer malware NS-STEALER then stores screenshots, cookies, credentials , and autofill datastolen from various web browsers, as well as system information, session data Steam and Telegram. The stolen information is passed to a Discord Bot channel and reaches cybercriminals.
The Trellix researcher says that the sophisticated way of collecting sensitive information and the use of X509 certificate for authentication support makeNS-STEALER very effective. Furthermore, the Discord bot channel for receiving the collected data is cost-effective.

What are the best methods for protecting against info stealer malware?
The first and most important method of protection is awareness and education. Users need to be aware of the techniques attackers use to spread malware so they can identify and avoid them.
See also: Atomic Stealer: New version of malware targets macOS
Installing reliable security software is another key method of protection against info-stealer malware, such as NS-STEALER. This software should include antivirus, anti-spyware , and anti-malware features, as well as phishing protection.
It's also important to keep your operating system and all applications up to date. Updates include security fixes that can protect computer from the latest threats.
Using strong passwords and changing them regularly can protect your data from theft. Also, using a password manager can help manage and secure your passwords.
See also: Lumma Stealer malware: Distributed via YouTube videos
Finally, careful interaction with emails and file attachments is crucial. Never open attachments or click on links from unknown sources.
Source: thehackernews.com
