Skip to content

Cyber Security And Bitcoin Blockchain News

The World

  • Cumulative NFT Sales Among 18 Blockchain Networks Surpass $36 Billion – Blockchain Bitcoin News bitcoin news
  • Bank of Russia Steps Up Efforts to Issue Digital Ruble Due to Sanctions – Finance Bitcoin News bitcoin news
  • Square Enix Closes $300 Million Sale of Western Studios to Bankroll Blockchain Pivot – News Bitcoin News bitcoin news
  • Europe Agrees to Adopt New NIS2 Directive Aimed at Hardening Cybersecurity cyber security news
  • Brazilian Development Bank Launches Blockchain Network – Bitcoin News bitcoin news
  • Terra’s Crypto Tokens UST and Luna Classic Mysteriously Pumped This Week, UST Climbed by 470% – Market Updates Bitcoin News bitcoin news
  • How Plugin’s Blockchain Technology Helps Industries Adapt To Climate Change bitcoin news
  • BTC Below $20,000, ETH Slips Under $1,000 – Market Updates Bitcoin News bitcoin news

Microsoft Warns of “CryWare” Info-Stealing Malware Targeting Crypto Wallets

Posted on May 18, 2022 By root


Microsoft is warning of an emerging threat targeting internet-connected cryptocurrency wallets, signaling a departure in the use of digital coins in cyberattacks.

The tech giant dubbed the new threat “cryware,” with the attacks resulting in the irreversible theft of virtual currencies by means of fraudulent transfers to an adversary-controlled wallet.

“Cryware are information stealers that collect and exfiltrate data directly from non-custodial cryptocurrency wallets, also known as hot wallets,” Berman Enconado and Laurie Kirk of the Microsoft 365 Defender Research Team said in a new report.

“Because hot wallets, unlike custodial wallets, are stored locally on a device and provide easier access to cryptographic keys needed to perform transactions, more and more threats are targeting them.”

Attacks of this kind are not theoretical. Earlier this year, Kaspersky disclosed a financially-motivated campaign staged by the North Korea-based Lazarus Group, which involved targeting crypto companies with malware designed to drain funds out of hot wallets.

Cryware encompasses the following threats –

  • Cryptojackers that surreptitiously consume a target’s device resources to mine cryptocurrency
  • Ransomware campaigns that make use of cryptocurrency as a ransom payment to avoid detection
  • Information stealers (e.g., Mars Stealer, RedLine Stealer, Arkei, and Raccoon) are being increasingly upgraded to siphon hot wallet data alongside other valuable information stored in the system, and
  • ClipBankers (aka clippers) steal cryptocurrency during transactions by monitoring the clipboard and replacing the original wallet address with the attacker’s address
CyberSecurity

Such information-stealing attacks aim to extract hot wallet data such as private keys, seed phrases, and wallet addresses, thereby allowing the threat actor to initiate rogue transactions and move funds to another wallet.

Alternatively, cybercriminals have also been observed to leverage techniques like memory dumping to display the private keys in plaintext, keylogging to capture keystrokes entered by a victim, or designing lookalike wallet websites to trick users into entering their private keys.

To mitigate such threats, Microsoft is recommending users and organizations to lock hot wallets when not trading, disconnect sites connected to a wallet, avoid storing private keys in plaintext, and verify the value of the wallet address when copying and pasting the information.

“Cryware signifies a shift in the use of cryptocurrencies in attacks: no longer as a means to an end but the end itself,” the researchers said.





TheHackersNews/

cyber security news

Post navigation

Previous Post: New Data Shows China Still Controls 21% Of The Global Bitcoin Mining Hashrate
Next Post: U.S. Warns Against North Korean Hackers Posing as IT Freelancers

Related Posts

  • Heroku Forces User Password Resets Following GitHub OAuth Token Theft cyber security news
  • U.S. Offers $10 Million Bounty for Information on 6 Russian Military Hackers cyber security news
  • Researchers Warn of ‘Matanbuchus’ Malware Campaign Dropping Cobalt Strike Beacons cyber security news
  • Microsoft Releases Fix for New Zero-Day with May 2022 Patch Tuesday Updates cyber security news
  • U.S. Offering $10 Million Reward for Information on Conti Ransomware Hackers cyber security news
  • Gold Ulrick Hackers Still in Action Despite Massive Conti Ransomware Leak cyber security news

Archives

  • July 2022
  • June 2022
  • May 2022

Categories

  • bitcoin news
  • cyber security news

Recent Posts

  • Russian Media Censor Roskomnadzor Blocks Major Crypto News Website – Bitcoin News
  • Jed McCaleb’s Ripple Stash Down to 81 Million — Co-Founder’s XRP Cache Likely to Dry Up This Year – Altcoins Bitcoin News
  • Exploit Forces Crema Finance to Temporarily Suspend Services, $8.7 Million Stolen – Bitcoin News
  • Blockfi CEO Says FTX Has an ‘Option to Acquire’ Crypto Lender at a Price of up to $240M – Bitcoin News
  • Dogecoin (DOGE) Could Use Some Lift

Recent Comments

No comments to show.
  • GitHub Says Recent Attack Involving Stolen OAuth Tokens Was “Highly Targeted” cyber security news
  • Bitcoin Steady Above $20K After Drop To $17K bitcoin news
  • Kazakhstan Makes $1.5 Million From Crypto Mining Sector in Q1 – Mining Bitcoin News bitcoin news
  • Solana Broke Its Nearest Support, Vital Trading Levels To Keep An Eye On bitcoin news
  • The Nightly Mint: Daily NFT Recap bitcoin news
  • Ethereum Gas Fees Touch New Lows, What’s Ahead For Ethereum bitcoin news
  • Portuguese Parliament Rejects Crypto Tax Proposals During Budget Debate – Taxes Bitcoin News bitcoin news
  • Avalanche Crumbles More Than 16% As Crypto Landslide Continues bitcoin news

Copyright © 2022 Cyber Security And Bitcoin Blockchain News.

Powered by PressBook News Dark theme