AI-Powered BraZetsu Malware Turns Compromised Corporate PCs Into Tradable Assets
Brief
Group-IB has uncovered BraZetsu, a Python-based Windows malware framework designed to help cybercriminals gain, evaluate, and sell access to compromised corporate systems.
The malware is linked with high confidence to the Brazilian threat actor Exilware and functions as the technical engine behind an underground “Infected Marketplace.”
Unlike a conventional infostealer, BraZetsu is built primarily for initial access operations and intelligence gathering. It profiles infected computers, identifies valuable business applications and data, and sends the collected intelligence to attackers.
This allows criminals to determine which compromised machines have the highest commercial value. The malware has targeted organizations across Brazil and other Iberian and Latin American regions.
