Klimt Save Abandoned

Klimt is the most powerful information stealer with extraction options for Discord, Crypto Wallets, Browsers, Roblox, and much more!

Project README
Logo

Klimt Stealer

The most powerful credential & information stealing tool, written in GoLang
Created and maintained by codeuk

View Features ยท Embed Showcase ยท Installing/Usage


About This Project

Klimt is an offensive security tool designed for credential stealing, system information analysis and security assessments. It features a range of options for compromising different types of systems and applications, including Discord, Various CryptoCurrency Wallets, Web Browsers, Roblox, and many more. Klimt also includes a persistent reverse shell option that allows users to execute commands from a remote server, along with an interactive GUI builder.

Note: When using this program, do not upload the stub (build/agent.exe) to any virus scanning platforms (ex. VirusTotal) as this will only increase detections in the future.

Features

Features with the ๐Ÿ’Ž emoji before them are held for the private/professional version only

Credential Stealing
  • Discord Stealer: Steals authentication tokens and account information from 30+ Discord locations.
  • Wallet Stealer: Steals cryptocurrency wallet files and credentials from popular wallets.
  • FileZilla Stealer: Steals recent server credentials and configuration settings from the FileZilla client.
  • Browser Stealer: Steals browser cookies, passwords, history, downloads and credit cards from Web Browsers.
  • ๐Ÿ’Ž Steam Stealer: Steals account authentication tokens from the Steam client.
  • ๐Ÿ’Ž Telegram Stealer: Steals client session data from the Telegram client.
  • ๐Ÿ’Ž Roblox Stealer: Steals login credentials and authentication tokens from the Roblox game client & website.
Program Injection
  • Discord: Injects a custom Javascript package into the Discord process for added functionality.
  • ๐Ÿ’Ž Startup: Adds Klimt to the list of startup programs to ensure persistence.
  • ๐Ÿ’Ž Browsers: Injects a custom module into major web browsers for added functionality.
System Information
  • General: Collects general system information using the Windows registry and WMIC.
  • Local Files: Scans the target machines files.
  • Installed Software: Collects information on installed software.
  • Network Connections: Logs network activity and connections.
  • ๐Ÿ’Ž WiFi/SSID Credentials: Steals login credentials and SSID information from all available WiFi connections.
Misc
  • Reverse Shell: Optional connection to your external listener server (netcat, msf, etc.)
  • Custom GUI Builder with interactive widgets (Embed color picker, tabs, etc.)
  • Relatively small build size (4MB UPX'd) in comparison to other stealers (approx. 30MB+)
  • FUD With Crypter (Pro version is less detectable)
  • Encrypts strings stored in the config so that they aren't searchable in the binary, such as:
    • Discord Webhook URL
    • Reverse Shell Server Information

Embed Showcase

Embed layouts may differ depending on the stealer configuration and version (below is the free version).

OverviewSystemSystem

Builder Showcase

Layout and theme of the builder may change in the future

OverviewOverview

Installation

To install Klimt, make sure you have GoLang and GCC installed and follow these steps:

If you can't install GCC, just use the pre-compiled builder in the releases page instead of doing the following.

  1. Clone the repository using git clone https://github.com/codeuk/klimt.git
  2. Open a terminal and navigate to the directory you installed Klimt in.
  3. Download all pre-requisites by running go get ./...
  4. Build the builder using go build builder.go or by running build.bat

If you encounter any errors during this process, first look it up and see if it's an easy fix, and if you still can't manage to fix it, create an issue

Usage

To use the Klimt Builder, follow these steps:

  1. In the Klimt directory, run builder or open the new builder.exe file to open the Klimt Stealer Builder.
  2. Wait a few seconds, and when the builder GUI opens, configure it how you wish and press Compile Stealer.
  3. If the build is successful, the executable should be in build/agent.exe, and can now use this stub as you wish.

The stealer build is approx. 4MB (UPX'd) and so far FUD (0 detections with the Pro Version, at least.), though I'd still recommend using a dropper when putting it to operational use.

Disclaimer

Klimt is intended for legal and ethical use only. The developers and contributors of Klimt are not responsible for any illegal or unethical activities performed using this tool. Users of Klimt are solely responsible for their actions and are advised to use the tool for legitimate security testing purposes only. Reselling this program as a closed-source binary is a crime, please do not steal the source.

License

Klimt is licensed under the GNU General Public License v3.0. See the LICENSE file for more information.

Overview
Open Source Agenda is not affiliated with "Klimt" Project. README Source: codeuk/klimt

Open Source Agenda Badge

Open Source Agenda Rating