Researchers uncovered BraZetsu, a Python-based Windows malware framework used by Exilware to turn compromised systems into tradable access points on the Infected Marketplace. The malware targets Iberian and Latin American organizations, uses AI-assisted triage and stealthy reconnaissance, and overlaps in function and infrastructure with CNABHunter and AgenteV2. #BraZetsu #Exilware #InfectedMarketplace #CNABHunter #AgenteV2
Keypoints
- BraZetsu is a modular Python malware framework built for initial access and host commoditization.
- Exilware uses the Infected Marketplace to sell access to compromised systems.
- The malware targets Iberian and Latin American sectors, including e-commerce, finance, industry, and law enforcement.
- BraZetsu collects browser histories, certificates, screenshots, CNAB files, and system data for prioritization.
- Researchers found overlaps with CNABHunter and AgenteV2, suggesting shared code, tradecraft, and infrastructure.
Read More: https://thehackernews.com/2026/09/brazetsu-malware-turns-compromised.html