THIS report discusses the critical alert related to the Dolphin X stealer tool, a malware sold on cybercrime forums. Key points include: 1. **Threat Overview**: Dolphin X offers credential stealing and remote access capabilities, targeting primarily Windows developers and cloud admins. 2. **Vendor Identity**: The seller operates under the alias 'Kontraktnik' with no verifiable identity.
3. **Tool Functionality**: It features over 300 targets for credential theft and an AI Profiler to assess the value of infected machines based on behavior tracking. 4. **Security Risks**: A single infection can compromise entire production environments. 5. **Protection Recommendations**: Users are advised to avoid local storage of sensitive credentials, monitor unusual processes, and rotate access keys regularly.