Microsoft said a newly identified malware strain combines data theft with remote code execution, a capability that can allow attackers to run commands on an affected system. According to Cointelegraph, Microsoft described the development as “turning a financially motivated stealer into a lightweight backdoor,” indicating the malware’s functionality goes beyond stealing information by also enabling remote access-like behavior.
The company’s characterization highlights a shift in how the malware can be used, blending credential or data-stealing activity with the ability to execute code remotely. Microsoft’s statement frames the threat as more versatile than a typical “stealer,” because remote code execution can expand what an attacker can do after initial compromise. The report did not provide additional details on the malware’s name, distribution methods, targeted platforms, or mitigation steps.