MioLab MacOS Stealer


A new MacOS infostealer MaaS, named MioLab, was advertised on the XSS forum. Below is the machine translation of forum post. The machine translation is done by using DeepL.com, and some minor edits by me.

The screenshots is taken from the XSS forum. I have skipped few text snippets from the post, wasn’t sure if it is a good idea to post the contact details of the MaaS creator.


MioLab – MacOS stealer | 24/7 SUPPORT | WEB PANEL | INDIVIDUAL CONFIGURATION | % WORK | VOUCH COPY

MioLab MacOS is the right tool to achieve your goals.

Technical information:

  • The stab is written in plain C, the weight of the bare build is ~100 kb.
  • Compatible with x86-64 and ARM64 architectures.
  • Compatible with versions from Sierra to Tahoe.
  • Convenient web panel.
  • Ability to create unix, app, and dmg builds for any task.
  • Complete freedom in customizing builds, enter your message at each stage, or use our presets.
  • The log delivery does not depend on running applications or VPN. The log will arrive in any case.

Stealer functionality:

  • Complete collection of cookies, passwords, history, autofills, and GoogleTokens from all popular Chromium & Gecko-based browsers.
  • Collection of 200+ crypto wallet extensions (Metamask, Trust Wallet, etc.), collection of 15+ password managers (Authenticator, LastPass, etc.) .
  • Collection of 50+ cold wallets (Exodus, Electrum, etc.), including .dat, .key, and .keys files.
  • FileGrabber with customizable settings.
  • Collection and decryption of keychain.
  • Collection of Apple Notes.
  • Collection of all information about the user’s device.

Web panel features:

  • Dashboard – statistics on cookies, passwords, wallets, countries per day, week, month, all time.
  • Logs – full-featured log sorter in a web interface, mass download by country or request-based.
  • Cookie Restore – cookie restore by GoogleToken.
  • Builder – complete freedom for your imagination, any text and icon when requesting a password, complete customization of the .dmg file.
  • News – Telegram channel with up-to-date information, contacts, and news.
  • Profile – account management, linking a Telegram bot for text/file notifications.

Additional information:

  • The Ledger and Trezor modules are not included in the subscription; a one-time payment of $500 is required for both modules.
  • Operations in Russia and the CIS are strictly prohibited, with no exceptions; two-level CIS blocking.

Cost:

  • $750 – one month subscription.
  • $500 – Ledger and Trezor modules (one-time payment).

It is possible to work with us for a percentage of the profit. We only connect large players with experience or teams. Work for a percentage of the profit is only available on Telegram.