Wednesday, September 3, 2025
HomeNewsFake Bitdefender Site Spreads Password-Stealing Malware by Paige Henley

Fake Bitdefender Site Spreads Password-Stealing Malware by Paige Henley


Paige Henley

Published on: June 6, 2025
Editor

Cybercriminals are tricking people into downloading malware by setting up a fake Bitdefender website that looks nearly identical to the real one. When users click the “Download for Windows” button, they unknowingly install VenomRAT, a tool that gives hackers remote access to their device and lets them steal passwords and other sensitive data.

The RAT’s “capabilities include remote access, stealing credentials, keylogging, exfiltration, and more,” according to DomainTools.

Researchers at DomainTools found that the malware bundle also includes two other tools, StormKitty and SilentTrinity, for a three-pronged attack:

“VenomRAT sneaks in, StormKitty grabs your passwords and digital wallet info, and SilentTrinity ensures the attacker can stay hidden and maintain control.”

“The implications of long-term access may include repeat compromise or selling access.”

Bitdefender said it found the fake site earlier in May and flagged it as malicious. It’s now working with partners like Cloudflare to take it down.

Because VenomRAT is sold on hacking forums, it’s hard to say who’s behind the attack. Bitdefender says its focus is on blocking these threats before they can cause harm.

RELATED ARTICLES

Most Popular

Dominic
32260 POSTS0 COMMENTS
Milvus
81 POSTS0 COMMENTS
Nango Kala
6625 POSTS0 COMMENTS
Nicole Veronica
11795 POSTS0 COMMENTS
Nokonwaba Nkukhwana
11854 POSTS0 COMMENTS
Shaida Kate Naidoo
6746 POSTS0 COMMENTS
Ted Musemwa
7023 POSTS0 COMMENTS
Thapelo Manthata
6694 POSTS0 COMMENTS
Umr Jansen
6714 POSTS0 COMMENTS