Info Stealer

KPOT

First seen: 2018-08 • Status: active

Currently Active Threat

KPOT steals passwords from browsers, email programs, game accounts like Steam, and cryptocurrency wallets.

Overview

KPOT is a credential stealer sold on Russian forums. It targets browsers, email clients, gaming platforms, and cryptocurrency.

Also Known As

KPOT Stealer

How It Spreads

  • Malspam
  • Fake software

What It Does

  • Browser theft
  • Email credential theft
  • Gaming account theft
  • Crypto theft

Is your business exposed?

Target Platforms

Windows

Detection Tips

  • Monitor for KPOT signatures

MITRE ATT&CK Techniques

T1555, T1005

If You're Infected

  1. 1.

    Reset all credentials including gaming accounts

Related Malware

Azorult, Predator Stealer

Is your business exposed?

Check if your company data is circulating on the dark web

Free scan • No credit card required