August Stealer

Description

(Proofpoint) During the month of November, Proofpoint observed multiple campaigns from TA530 - an actor we have noted for their highly personalized campaigns - targeting customer service and managerial staff at retailers. These campaigns utilized “fileless” loading of a relatively new malware called August through the use of Word macros and PowerShell. August contains stealing functionality targeting credentials and sensitive documents from the infected computer.

Names

Name
August Stealer

Category

Malware

Type

  • Info stealer
  • Credential stealer
  • Exfiltration

Information

Malpedia

Alienvault Otx

Other Information

Uuid

43a1e38a-c143-443b-a501-ec2299589720

Last Card Change

2020-05-13