A malware campaign impersonated Claude Code and targeted AI developers with trojanized installers that delivered the ACR Stealer infostealer, according to Straiker. The operation used fake branding and likely relied on developer trust in popular AI tooling to lure victims into downloading malicious packages, with the apparent goal of stealing credentials, tokens, and other sensitive data from developer environments.
Straiker reported that the malware used techniques associated with Go-based tooling and obfuscation, including the use of garble, an open-source utility for obfuscating Go builds, to hinder analysis and detection. The campaign highlights the growing abuse of trusted AI developer brands in social-engineering attacks and the elevated risk to source code, cloud access, and secrets stored on compromised developer workstations.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
4 events from the most recent confirmed update back to the earliest known activity.
Netskope reported that Hookdeck disabled an endpoint used as a relay in the fake OpenClaw installer campaign after responsible disclosure. Netskope also assessed this as the first documented use of Hookdeck as a malware C2 relay.
On December 17, 2025, BI.ZONE published its report detailing Arcane Werewolf's October and November 2025 operations against Russian manufacturing firms. The analysis documented the Loki 2.0 and 2.1 infection chains, command changes, and related file and network indicators.
In November 2025, BI.ZONE observed additional Arcane Werewolf activity using a new C++ dropper and an updated Loki 2.1 loader. The malware wrote a PDF decoy and loader to disk, collected host information, and could either fetch an implant from C2 or decrypt an embedded local implant for execution.
In October 2025, Arcane Werewolf (also known as Mythic Likho) targeted Russian manufacturing enterprises with phishing links to spoofed domains hosting ZIP archives. The archives contained malicious LNK files that launched a Go dropper, opened a PDF decoy, and deployed a Loki 2.0 loader that collected host data and exfiltrated it to attacker-controlled infrastructure.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
4 references tracked. Mallory keeps watching after this page renders.
straiker.ai
Open sourcenetskope.com
Open sourcebi.zone
Open sourcegithub.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.