← Back to feed
Threat Actors & CampaignsEmerging1 sourceSep 1, 2026 · 10:49via CyberPress

AI-Powered BraZetsu Malware Turns Compromised Corporate PCs Into Tradable Assets

Brief

Group-IB has uncovered BraZetsu, a Python-based Windows malware framework designed to help cybercriminals gain, evaluate, and sell access to compromised corporate systems.

The malware is linked with high confidence to the Brazilian threat actor Exilware and functions as the technical engine behind an underground “Infected Marketplace.”

Unlike a conventional infostealer, BraZetsu is built primarily for initial access operations and intelligence gathering. It profiles infected computers, identifies valuable business applications and data, and sends the collected intelligence to attackers.

This allows criminals to determine which compromised machines have the highest commercial value. The malware has targeted organizations across Brazil and other Iberian and Latin American regions.

Read more on CyberPress