Skip to content

Cyber Security And Bitcoin Blockchain News

The World

  • Veteran Investor Jim Rogers Optimistic About Future of Crypto Money – Bitcoin News bitcoin news
  • The Myths of Ransomware Attacks and How To Mitigate Risk cyber security news
  • Bitcoin Hashrate Soars To New All-Time High, Will Price Follow bitcoin news
  • Spanish Securities Regulator Orders Binance to Stop Offering Cryptocurrency Derivatives – Regulation Bitcoin News bitcoin news
  • XMR Hits 2-Week High, LRC Climbs for Fifth Straight Day – Market Updates Bitcoin News bitcoin news
  • New Zealand VC Launches $5 Million Web3 and Crypto-Focused Fund – Finance Bitcoin News bitcoin news
  • Asia Broadband’s Holdings Explode by 500% as the Company Continues Connecting the Dots Between Gold and Digital Assets bitcoin news
  • Guggenheim’s Scott Minerd Sees a Lot More Downside to Crypto Market — Predicts Bitcoin Could Fall to $8K – Markets and Prices Bitcoin News bitcoin news

New RIG Exploit Kit Campaign Infecting Victims’ PCs with RedLine Stealer

Posted on May 2, 2022 By root


RIG Exploit Kit

A new campaign leveraging an exploit kit has been observed abusing an Internet Explorer flaw patched by Microsoft last year to deliver the RedLine Stealer trojan.

“When executed, RedLine Stealer performs recon against the target system (including username, hardware, browsers installed, anti-virus software) and then exfiltrates data (including passwords, saved credit cards, crypto wallets, VPN logins) to a remote command and control server,” Bitdefender said in a new report shared with The Hacker News.

Most of the infections are located in Brazil and Germany, followed by the U.S., Egypt, Canada, China, and Poland, among others.

Exploit kits or exploit packs are comprehensive tools that contain a collection of exploits designed to take advantage of vulnerabilities in commonly-used software by scanning infected systems for different kinds of flaws and deploying additional malware.

The primary infection method used by attackers to distribute exploit kits, in this case the Rig Exploit Kit, is through compromised websites that, when visited, drops the exploit code to ultimately send the RedLine Stealer payload to carry out follow-on attacks.

RIG Exploit Kit

The flaw in question is CVE-2021-26411 (CVSS score: 8.8), a memory corruption vulnerability impacting Internet Explorer that has been previously weaponized by North Korea-linked threat actors. It was addressed by Microsoft as part of its Patch Tuesday updates for March 2021.

“The RedLine Stealer sample delivered by RIG EK comes packed in multiple encryption layers […] to avoid detection,” the Romanian cybersecurity firm noted, with the unpacking of the malware progressing through as many as six stages.

CyberSecurity

RedLine Stealer, an information-stealing malware sold on underground forums, comes with features to exfiltrate passwords, cookies and credit card data saved in browsers, as well as crypto wallets, chat logs, VPN login credentials and text from files as per commands received from a remote server.

This is far from the only campaign that involves the distribution of RedLine Stealer. In February 2022, HP detailed a social engineering attack using fake Windows 11 upgrade installers to trick Windows 10 users into downloading and executing the malware.





TheHackersNews/

cyber security news

Post navigation

Previous Post: Twitter’s New Owner Elon Musk Wants DMs to be End-to-End Encrypted like Signal
Next Post: U.S Cybersecurity Agency Lists 2021’s Top 15 Most Exploited Software Vulnerabilities

Related Posts

  • UpdateAgent Returns with New macOS Malware Dropper Written in Swift cyber security news
  • Researchers Warn of ‘Raspberry Robin’ Malware Spreading via External Drives cyber security news
  • U.S. Warns Against North Korean Hackers Posing as IT Freelancers cyber security news
  • Researchers Warn of “Eternity Project” Malware Service Being Sold via Telegram cyber security news
  • Europe Agrees to Adopt New NIS2 Directive Aimed at Hardening Cybersecurity cyber security news
  • Ukrainian CERT Warns Citizens of a New Wave of Attacks Distributing Jester Malware cyber security news

Archives

  • May 2022

Categories

  • bitcoin news
  • cyber security news

Recent Posts

  • Sequel to Iconic RPG Ni No Kuni to Feature NFT Integration and Play-to-Earn Mechanics – News Bitcoin News
  • India’s Central Bank RBI to Adopt a ‘Graded Approach’ to Digital Currency Launch – Regulation Bitcoin News
  • Ethereum Slips, What Are The Next Vital Trading Levels For The Coin?
  • We’re Approaching a Recession but It’s ‘Actually a Good Thing’ – Economics Bitcoin News
  • FTX CEO Says Crypto Exchange Is Ready to Spend Billions on Acquisition Deals – Bitcoin News

Recent Comments

No comments to show.
  • Crypto Carnage Causes Flight To Bitcoin Safe Haven, Dominance Demonstrates bitcoin news
  • Independent Russian News Site Meduza Raises Over $200,000 in Crypto – Bitcoin News bitcoin news
  • Investors May Expect Downside For Bitcoin And Ethereum Market For The Next 3 Months bitcoin news
  • Cardano (ADA) Grapples At $0.524; Bullish Trajectory Coming bitcoin news
  • LUNA Loses 50% of Its Value, While XMR and AXS Declines Continue – Market Updates Bitcoin News bitcoin news
  • Ethereum’s Beacon Network Deals With a 7-Block Chain Reorganization – Bitcoin News bitcoin news
  • Researchers Warn of Nerbian RAT Targeting Entities in Italy, Spain, and the U.K cyber security news
  • BTC Slips to Its Lowest Point Since December 2020 – Market Updates Bitcoin News bitcoin news

Copyright © 2022 Cyber Security And Bitcoin Blockchain News.

Powered by PressBook News Dark theme