Vanta Stealer Malware Targets Windows Devices with Sophisticated Social-Engineering Tactics
Vanta Stealer is a sophisticated information-stealing malware that targets Windows devices. It's designed to collect sensitive data, including credentials, cryptocurrency wallet details, gaming accounts, and communication-platform sessions.
The malware uses layered packaging and obfuscation to evade detection, making analysis more difficult. The sample examined was a 64-bit Windows executable built with PyInstaller, a tool commonly used to bundle Python applications into standalone executables.
Vanta Stealer may be distributed through social-engineering lures, including phishing attachments, trojanized installers, cracked software, and fake browser or system updates. Game-focused lures may be especially effective, as the malware targets Steam, Riot Games, Roblox, Minecraft, and Valorant-related data.
The stealer also targets Chromium-based browsers and attempts to gather stored passwords, cookies, payment-card details, and other browser artifacts. It can retrieve a separate browser-credential extractor at runtime, allowing operators to update browser-stealing capabilities without rebuilding the main malware.