TF-MAL-ios.cookiesnatch
📛 Threat Title
Malware family: COOKIESNATCH
Description
ThreatFox malware family `ios.cookiesnatch`. Printable name: COOKIESNATCH.
Indicators of Compromise (1)
Each indicator is enriched from the IOC database, threat-intel feed corroboration (Threat Hunt) and VirusTotal. Click one to expand.
domain
ios.cookiesnatch
VT: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/ios.cookiesnatch
IOC database
- Type
- domain
- Value
ios.cookiesnatch- First seen
- Last seen
- Attached to this threat
- Appears in
- 1 threat
- Description
- Extracted from Threat TF-MAL-ios.cookiesnatch
Threat Hunt — feed corroboration
Not present in any configured threat-intel feed.
Details From VirusTotal
VirusTotal: VT base fetch failed: HTTPError: 429 Client Error: Too Many Requests for url: https://www.virustotal.com/api/v3/domains/ios.cookiesnatch
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (10)
-
web:cheatsheetseries.owasp.org
Cookie Theft Mitigation Cheat Sheet Introduction With the spread of 2FA and Passkey, the login process has become more robust, and even if an attacker steals only the password, it has become difficult to do a spoofing attack.
-
web:cybernews.com
The FBI warns of a surge in ATM jackpotting attacks, with more than 700 incidents in 2025 alone. Hackers use Ploutus malware to force machines to dispense cash.
-
web:cybersecuritynews.com
A sophisticated attack technique dubbed "Cookie-Bite" enables cybercriminals to silently bypass multi-factor authentication (MFA) and maintain persistent access to cloud environments.
-
web:malpedia.caad.fkie.fraunhofer.de
COOKIESNATCH Propose Change Actor (s): APT29 According to Google, this is a cookie stealer
-
web:thehackernews.com
TamperedChef malware spread via fake PDF editors from June 26 to August 21, stealing credentials and cookies.
-
web:windowsforum.com
A new browser-based threat dubbed the "Cookie-Bite" attack is capturing the cybersecurity community's attention, raising major concerns over the integrity of authentication within cloud environments like Microsoft Azure, Microsoft 365, Google Workspace, AWS, and others. The discovery, recently publicized by researchers from Varonis and reported on platforms such as Latest Hacking News ...
-
web:www.linkedin.com
Introduction A newly surfaced identity attack technique called "Cookie Bite" is making headlines across the cybersecurity world. By abusing session cookies via Microsoft Entra ID (formerly Azure ...
-
web:www.microsoft.com
Threat actors are targeting macOS users with fake utility fixes that trick them into running malicious Terminal commands. This campaign evades traditional defenses by stealing credentials, wallets, and sensitive data.
-
web:www.ncsc.gov.uk
How to defend organisations against malware or ransomware attacks.
-
web:www.stormguidance.com
Learn how Cookie-Bite attacks steal browser sessions, bypass passwords, and expose businesses to BEC, cloud breaches, and ransomware.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.