Celestial Stealer Malware: Advanced JavaScript Threat Via Telegram Network

In the ever-evolving landscape of online threats, Celestial Stealer stands out as a particularly sophisticated JavaScript-based infostealer targeting Chromium and Gecko-based browsers. This malevolent tool is explicitly designed to extract a wide array of sensitive information, including browsing history, saved passwords, autofill data, cookies, and even credit card details. By also keeping track of user-visited URLs and their frequencies, Celestial Stealer has the potential to exploit virtually every piece of data that passes through a user’s browser. What makes this malware even more alarming is its distribution model: operating as malware-as-a-service (MaaS) via Telegram. Individuals and groups can purchase memberships to access Celestial Stealer’s capabilities, which extend beyond browsers to inject payloads into applications such as Steam, Telegram, and cryptocurrency wallets like Atomic and Exodus.

The Infection Chain

Celestial Stealer’s infection process begins with an innocuous-looking Base64-encoded script masquerading as a Discord promotion generator tool. Once the script is activated, it is decrypted and executed through the certutil tool, a step that paves the way for the stealer to be retrieved from the command-and-control (C2) server. Once downloaded, the malware takes steps to obfuscate its presence and avoid detection by conventional security measures. Obfuscation techniques and anti-analysis tactics keep the stealer hidden while it goes to work on extracting sensitive data.

Researchers have noted that the malware even deploys regular updates to maintain its undetectable status. In one especially well-documented case, the stealer was disguised as a VR Chat ERP setup file, duping users into installing the malicious software under the guise of a seemingly legitimate application. This level of deception underscores the ne

Explore more

Agile Robots and Google DeepMind Partner for AI Automation

The sight of a robotic arm fluidly adjusting its grip to accommodate a fragile, oddly shaped component marks the end of an age defined by rigid, pre-programmed industrial machinery. While traditional automation relied on thousands of lines of static code to perform a single repetitive motion, a new alliance between Agile Robots and Google DeepMind is introducing a cognitive layer

The Rise of Careerfishing and Professional Deception in Hiring

The digital age has ushered in a sophisticated era of professional masquerading where jobseekers utilize carefully curated fictions to bypass traditional recruitment filters and secure roles for which they lack genuine qualifications. This phenomenon, increasingly known as careerfishing, mirrors the deceptive nature of online dating scams but targets the high-stakes world of corporate talent acquisition. It represents a deliberate, calculated

How Is HealthTech Redefining the Future of Talent Acquisition?

A single line of inefficient code in a modern clinical algorithm no longer just causes a screen to freeze; it can delay a life-saving diagnosis or disrupt the delicate flow of a decentralized clinical trial. In the high-stakes world of healthcare technology, the traditional boundaries of recruitment are dissolving as the industry shifts from a focus on static technical skills

AI Literacy Becomes the Fastest Growing Skill in HR

The traditional image of a human resources professional buried under a mountain of paper resumes and manual spreadsheets has vanished, replaced by a new breed of data-fluent strategist. Recent LinkedIn data reveals that AI-related competencies are now the fastest-growing additions to HR profiles across the globe, signaling a radical departure from the administrative roots of the profession. This surge in

Custom CRM Transforms Pharmaceutical Supply Chain Operations

A single delayed shipment of temperature-sensitive medicine can ripple through a healthcare network, yet many distributors still rely on the fragile logic of disconnected spreadsheets to manage their complex global inventories. In the high-stakes world of pharmaceutical logistics, the movement of life-saving goods requires more than just a warehouse; it demands a digital nervous system capable of tracking every pill