Skip to content

Cyber Security And Bitcoin Blockchain News

The World

  • DOJ Seizes 3 Web Domains Used to Sell Stolen Data and DDoS Services cyber security news
  • Ethereum Gas Fees Touch New Lows, What’s Ahead For Ethereum bitcoin news
  • Uganda Central Bank Says It Is Open to Crypto Firms Participating in Regulatory Sandbox – Regulation Bitcoin News bitcoin news
  • Bitcoin Is Consolidating But Is A Rally Near? bitcoin news
  • Bitcoin Consolidates Near Key Juncture, Can The Bulls Make It bitcoin news
  • SEC Launches Game-Show Campaign to Educate Investors in ‘a Playful Way’ – Crypto Included – Regulation Bitcoin News bitcoin news
  • BTC Falls to $20,000 Range, as Sell-Off Extends – Market Updates Bitcoin News bitcoin news
  • 42.9% of Turks View Gold as Best Form of Investment, Only 1.9% Would Invest in Crypto – Featured Bitcoin News bitcoin news

Researchers Warn of “Eternity Project” Malware Service Being Sold via Telegram

Posted on May 16, 2022 By root


Malware Service Being Sold via Telegram

An unidentified threat actor has been linked to an actively in-development malware toolkit called the “Eternity Project” that lets professional and amateur cybercriminals buy stealers, clippers, worms, miners, ransomware, and a distributed denial-of-service (DDoS) bot.

What makes this malware-as-a-service (MaaS) stand out is that besides using a Telegram channel to communicate updates about the latest features, it also employs a Telegram Bot that enables the purchasers to build the binary.

“The [threat actors] provide an option in the Telegram channel to customize the binary features, which provides an effective way to build binaries without any dependencies,” researchers from Cyble said in a report published last week.

Each of the modules can be leased separately and provides paid access to a wide variety of functions –

  • Eternity Stealer ($260 for an annual subscription) – Siphon passwords, cookies, credit cards, browser cryptocurrency extensions, crypto wallets, VPN clients, and email apps from a victim’s machine and sends them to the Telegram Bot
  • Eternity Miner ($90 as an annual subscription) – Abuse the computing resources of a compromised machine to mine cryptocurrency
  • Eternity Clipper ($110) – A crypto-clipping program that steals cryptocurrency during a transaction by substituting the original wallet address saved in the clipboard with the attacker’s wallet address.
  • Eternity Ransomware ($490) – A 130kb ransomware executable to encrypt all of the users’ files until a ransom is paid
  • Eternity Worm ($390) – A malware that propagates through USB Drives, local network shares, local files as well as via spam messages broadcasted on Discord and Telegram.
  • Eternity DDoS Bot (N/A) – The feature is said to be currently under development.

Cyble pointed out there are indications that the malware authors may be repurposing existing code related to DynamicStealer, which is available on GitHub, and trading it under a new moniker for profit.

It’s worth noting that Jester Stealer, another malware that came to light in February 2022 and has since been put to use in phishing attacks against Ukraine, also utilizes the same GitHub repository for downloading TOR proxies, indicating possible links between the two threat actors.

CyberSecurity

The cybersecurity firm also said it “has observed a significant increase in cybercrime through Telegram channels and cybercrime forums where [threat actors] sell their products without any regulation.”

Just last week, BlackBerry exposed the inner workings of a remote access trojan called DCRat (aka DarkCrystal RAT) that’s available for sale at cheap prices on Russian hacking forums and uses a Telegram channel for sharing details regarding software and plugin updates.





TheHackersNews/

cyber security news

Post navigation

Previous Post: Tezos Foundation Launches Fund to Collect NFT Creations by African and Asian Artists – Metaverse Bitcoin News
Next Post: Join The Gensokishi Online Closed Alpha For Massive Rewards

Related Posts

  • Critical ‘Pantsdown’ BMC Vulnerability Affects QCT Servers Used in Data Centers cyber security news
  • ExpressVPN Removes Servers in India After Refusing to Comply with Government Order cyber security news
  • New Android Banking Trojan ‘Revive’ Targeting Users of Spanish Financial Services cyber security news
  • How to Improve Margins and Scale-Up Service Delivery cyber security news
  • 10 Most Prolific Banking Trojans Targeting Hundreds of Financial Apps with Over a Billion Users cyber security news
  • A Decade-Long Chinese Espionage Campaign Targets Southeast Asia and Australia cyber security news

Archives

  • July 2022
  • June 2022
  • May 2022

Categories

  • bitcoin news
  • cyber security news

Recent Posts

  • Russian Media Censor Roskomnadzor Blocks Major Crypto News Website – Bitcoin News
  • Jed McCaleb’s Ripple Stash Down to 81 Million — Co-Founder’s XRP Cache Likely to Dry Up This Year – Altcoins Bitcoin News
  • Exploit Forces Crema Finance to Temporarily Suspend Services, $8.7 Million Stolen – Bitcoin News
  • Blockfi CEO Says FTX Has an ‘Option to Acquire’ Crypto Lender at a Price of up to $240M – Bitcoin News
  • Dogecoin (DOGE) Could Use Some Lift

Recent Comments

No comments to show.
  • Thailand Exempts Crypto Transfers From VAT Until End of 2023 – Taxes Bitcoin News bitcoin news
  • El Salvador Postpones Bitcoin Bonds A Second Time, Here’s Why bitcoin news
  • SOL Slips Again as ATOM Drops 10% to Start the Weekend – Market Updates Bitcoin News bitcoin news
  • Bitcoin Miners Expected to Catch a Break in 2 Days, Mining Difficulty Estimated to Drop Close to 4% – Mining Bitcoin News bitcoin news
  • Ethereum Bulls Keeps Pushing, Why ETH Could Rise Steadily bitcoin news
  • Bitcoin Recovery Stalls Near Key Juncture, Key Resistance Intact bitcoin news
  • Crypto Investors Dump Small Caps For Blue Chips Like Bitcoin bitcoin news
  • Fresh Gains Push Bitcoin Back Into the World’s Top 10 Most Valuable Assets – Markets and Prices Bitcoin News bitcoin news

Copyright © 2022 Cyber Security And Bitcoin Blockchain News.

Powered by PressBook News Dark theme