BrowserSnatch is an open-source browser stealer. The provided content states that Olymp Loader included an early browser-stealer module based on BrowserSnatch’s open-source code, and that BrSteal is also based on BrowserSnatch. Based on the available information, its confirmed role is theft of browser data. It is associated in the content as source code reused by other malware families rather than as a standalone campaign. No specific infection vector, targeted industries, operating system scope, threat actor attribution, or indicators of compromise for BrowserSnatch itself are provided in the content.
Mallory pivots from this family to the IOCs, detections, and named campaigns that touch your stack, and pages you when something new lands.
2 sources tracked across advisories, community write-ups, and news. New activity surfaces here as Mallory finds it.
Open-source stealer codebase used as the basis for Olymp Loader’s browser-stealing module.
Open-source C++ browser stealer referenced as the codebase BrSteal is derived from/extended.
Match every observed IP, domain, and hash against your live telemetry.
Named campaigns wielding this family, with evidence pinned to each claim.
CVEs this family uses for access and lateral movement.
YARA, Sigma, Snort, and vendor rules, auto-deployed to your SIEM.
Every documented technique, ranked by evidence weight.
Reddit, Mastodon, and CTI community discussion around this family.