Celestial Stealer Malware: Advanced JavaScript Threat Via Telegram Network

In the ever-evolving landscape of online threats, Celestial Stealer stands out as a particularly sophisticated JavaScript-based infostealer targeting Chromium and Gecko-based browsers. This malevolent tool is explicitly designed to extract a wide array of sensitive information, including browsing history, saved passwords, autofill data, cookies, and even credit card details. By also keeping track of user-visited URLs and their frequencies, Celestial Stealer has the potential to exploit virtually every piece of data that passes through a user’s browser. What makes this malware even more alarming is its distribution model: operating as malware-as-a-service (MaaS) via Telegram. Individuals and groups can purchase memberships to access Celestial Stealer’s capabilities, which extend beyond browsers to inject payloads into applications such as Steam, Telegram, and cryptocurrency wallets like Atomic and Exodus.

The Infection Chain

Celestial Stealer’s infection process begins with an innocuous-looking Base64-encoded script masquerading as a Discord promotion generator tool. Once the script is activated, it is decrypted and executed through the certutil tool, a step that paves the way for the stealer to be retrieved from the command-and-control (C2) server. Once downloaded, the malware takes steps to obfuscate its presence and avoid detection by conventional security measures. Obfuscation techniques and anti-analysis tactics keep the stealer hidden while it goes to work on extracting sensitive data.

Researchers have noted that the malware even deploys regular updates to maintain its undetectable status. In one especially well-documented case, the stealer was disguised as a VR Chat ERP setup file, duping users into installing the malicious software under the guise of a seemingly legitimate application. This level of deception underscores the ne

Explore more

A Beginner’s Guide to Data Engineering and DataOps for 2026

While the public often celebrates the triumphs of artificial intelligence and predictive modeling, these high-level insights depend entirely on a hidden, gargantuan plumbing system that keeps data flowing, clean, and accessible. In the current landscape, the realization has settled across the corporate world that a data scientist without a data engineer is like a master chef in a kitchen with

Ethereum Adopts ERC-7730 to Replace Risky Blind Signing

For years, the experience of interacting with decentralized applications on the Ethereum blockchain has been fraught with a precarious and dangerous uncertainty known as blind signing. Every time a user attempted to swap tokens or provide liquidity, their hardware or software wallet would present them with a wall of incomprehensible hexadecimal code, essentially asking them to authorize a financial transaction

Germany Funds KDE to Boost Linux as Windows Alternative

The decision by the German government to allocate a 1.3 million euro grant to the KDE community marks a definitive shift in how European nations view the long-standing dominance of proprietary operating systems like Windows and macOS. This financial injection, facilitated by the Sovereign Tech Fund, serves as a high-stakes investment in the concept of digital sovereignty, aiming to provide

Why Is This $20 Windows 11 Pro and Training Bundle a Steal?

Navigating the complexities of modern computing requires more than just high-end hardware; it demands an operating system that integrates seamlessly with artificial intelligence while providing robust security for sensitive personal and professional data. As of 2026, many users still find themselves tethered to aging software environments that struggle to keep pace with the rapid advancements in cloud computing and data

Notion Launches Developer Platform for AI Agent Management

The modern enterprise currently grapples with an overwhelming explosion of disconnected software tools that fragment critical information and stall meaningful productivity across entire departments. While the shift toward artificial intelligence promised to streamline these disparate workflows, the reality has often resulted in a chaotic landscape where specialized agents lack the necessary context to perform high-stakes tasks autonomously. Organizations frequently find