FeedMalwareFake X-VPN installer deploys STX RAT malware on unsuspecting...
MalwareCyber Insider
8.5CRITICAL

Fake X-VPN installer deploys STX RAT malware on unsuspecting users

📅 8 June 2026 at 16:35 UTC📰 Cyber InsiderView original source ↗
Fake X-VPN installer deploys STX RAT malware on unsuspecting users

An active malware distribution campaign employs a fake X-VPN installer to deploy the STX RAT in memory and steal credentials from victims. The campaign was documented by Cyderes threat researchers, who say the operation remained active after earlier disclosures, with the perpetrators rotating infrastructure and continuing the distribution of new malware-laced software packages. The investigation … The post Fake X-VPN installer deploys STX RAT malware on unsuspecting users appeared first on CyberInsider.

🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview

A fake X-VPN installer was used to deploy the STX RAT malware in memory, stealing credentials from unsuspecting users. The campaign remained active despite earlier disclosures and continued distribution of new malware-laced software packages.

⚙️Technical Details
Affected Systems
Windows
Attack Vectors
DLL sideloadingmalicious CRYPTBASE.dll file bundled with legitimate software
💥Impact Assessment
Severity: high
Who Is at Risk
Users who downloaded the malicious installer from attacker-controlled sources, particularly cryptocurrency traders and investors.
🛡️Recommended Actions
1Monitor for CRYPTBASE.dll sideloading activity
2Block communications with supp0v3[.]com infrastructure
3Only download software from official vendor sources
📦Affected Products
HWMonitorCPU-ZFileZillaLibreOfficeX-VPN

Read the full article

This is a curated summary. The complete article is available at Cyber Insider.

Read on Cyber Insider
← Back to feed