GoStealer

A modern infostealer family written in the Go programming language. The display runtime generates large size (2-3MB) with static linking; Targets from Chrome, Edge and crypto wallet. Its version and specific subfamily are unclear.

Threat Profile
Type Infostealer
Programming LanguageGo (Golang)
C2 ProtocolHTTPS
First Seen2023
Targets Kuresel
Purpose / Capabilities
  • Browser Credential Theft
No C2 servers have been identified for this family yet.

Research Reports (2)

High

Go Tabanli Stealer -- a609d1b9.exe 3.1MB, MB Vidar Etiketi Yanlis, Go Runtime | Yuksek

3.1MB Go binary. MB Vidar yanlis etiketledi. sync.Mutex Go runtime kaniti.

Read Report →
High

Go Tabanli Infostealer — install-1.5.exe 2.9MB, MB Vidar Etiketi, Chrome Tarayici Hedefi | Yuksek

Go tabanli infostealer. install-1.5.exe 2.9MB, MB yanlislikla Vidar etiketledi. Chrome ve tarayici hedefli.

Read Report →