• bitcoinBitcoin (BTC) $ 90,885.00
  • ethereumEthereum (ETH) $ 3,037.04
  • tetherTether (USDT) $ 1.00
  • xrpXRP (XRP) $ 2.19
  • bnbBNB (BNB) $ 883.05
  • solanaWrapped SOL (SOL) $ 137.57
  • usd-coinUSDC (USDC) $ 0.999801
  • tronTRON (TRX) $ 0.281522
  • staked-etherLido Staked Ether (STETH) $ 3,037.93
  • dogecoinDogecoin (DOGE) $ 0.150052
  • cardanoCardano (ADA) $ 0.417968
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.04
  • whitebitWhiteBIT Coin (WBT) $ 58.86
  • wrapped-stethWrapped stETH (WSTETH) $ 3,707.86
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 90,735.00
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 3,291.45
  • bitcoin-cashBitcoin Cash (BCH) $ 536.33
  • hyperliquidHyperliquid (HYPE) $ 34.96
  • usdsUSDS (USDS) $ 0.999675
  • chainlinkChainlink (LINK) $ 13.12
  • leo-tokenLEO Token (LEO) $ 9.79
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.999926
  • stellarStellar (XLM) $ 0.253004
  • wethWETH (WETH) $ 3,040.00
  • wrapped-eethWrapped eETH (WEETH) $ 3,288.25
  • zcashZcash (ZEC) $ 467.14
  • moneroMonero (XMR) $ 409.69
  • ethena-usdeEthena USDe (USDE) $ 0.999374
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 90,892.00
  • litecoinLitecoin (LTC) $ 85.04
  • avalanche-2Avalanche (AVAX) $ 14.85
  • hedera-hashgraphHedera (HBAR) $ 0.144284
  • suiSui (SUI) $ 1.52
  • shiba-inuShiba Inu (SHIB) $ 0.000009
  • daiDai (DAI) $ 0.999511
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.159313
  • crypto-com-chainCronos (CRO) $ 0.109080
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.21
  • susdssUSDS (SUSDS) $ 1.08
  • the-open-networkToncoin (TON) $ 1.59
  • uniswapUniswap (UNI) $ 6.15
  • paypal-usdPayPal USD (PYUSD) $ 0.999721
  • polkadotPolkadot (DOT) $ 2.29
  • usdt0USDT0 (USDT0) $ 0.999978
  • mantleMantle (MNT) $ 1.08
  • canton-networkCanton (CC) $ 0.084747
  • bittensorBittensor (TAO) $ 299.75
  • aaveAave (AAVE) $ 185.88
  • usd1-wlfiUSD1 (USD1) $ 0.999353
  • bitget-tokenBitget Token (BGB) $ 3.62
  • nearNEAR Protocol (NEAR) $ 1.90
  • memecoreMemeCore (M) $ 1.39
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • okbOKB (OKB) $ 109.30
  • internet-computerInternet Computer (ICP) $ 4.13
  • aster-2Aster (ASTER) $ 1.10
  • tether-goldTether Gold (XAUT) $ 4,215.49
  • falcon-financeFalcon USD (USDF) $ 0.999340
  • ethereum-classicEthereum Classic (ETC) $ 13.86
  • ethenaEthena (ENA) $ 0.280805
  • pi-networkPi Network (PI) $ 0.247348
  • pepePepe (PEPE) $ 0.000005
  • jito-staked-solJito Staked SOL (JITOSOL) $ 171.28
  • binance-peg-wethBinance-Peg WETH (WETH) $ 3,038.60
  • pump-funPump.fun (PUMP) $ 0.002911
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.70
  • rainRain (RAIN) $ 0.007089
  • htx-daoHTX DAO (HTX) $ 0.000002
  • ondo-financeOndo (ONDO) $ 0.518215
  • kaspaKaspa (KAS) $ 0.058557
  • aptosAptos (APT) $ 2.13
  • worldcoin-wldWorldcoin (WLD) $ 0.647189
  • kucoin-sharesKuCoin (KCS) $ 11.66
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.134978
  • pax-goldPAX Gold (PAXG) $ 4,236.53
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.14
  • quant-networkQuant (QNT) $ 94.10
  • usdtbUSDtb (USDTB) $ 1.00
  • bfusdBFUSD (BFUSD) $ 0.999107
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,487.81
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999780
  • ripple-usdRipple USD (RLUSD) $ 0.999689
  • algorandAlgorand (ALGO) $ 0.142850
  • gatechain-tokenGate (GT) $ 10.62
  • global-dollarGlobal Dollar (USDG) $ 0.999841
  • wbnbWrapped BNB (WBNB) $ 883.07
  • arbitrumArbitrum (ARB) $ 0.217929
  • official-trumpOfficial Trump (TRUMP) $ 6.10
  • hashnote-usycCircle USYC (USYC) $ 1.11
  • flare-networksFlare (FLR) $ 0.015377
  • cosmosCosmos Hub (ATOM) $ 2.45
  • vechainVeChain (VET) $ 0.013618
  • skySky (SKY) $ 0.051118
  • filecoinFilecoin (FIL) $ 1.62
  • binance-staked-solBinance Staked SOL (BNSOL) $ 149.01
  • hash-2Provenance Blockchain (HASH) $ 0.022210
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,215.12
  • ignition-fbtcFunction FBTC (FBTC) $ 90,982.00
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 35.10
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 90,845.00
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 3,246.91
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 90,675.00
  • nexoNEXO (NEXO) $ 0.996596
  • xdce-crowd-saleXDC Network (XDC) $ 0.053516
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • render-tokenRender (RENDER) $ 1.80
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.996802
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.91
  • sei-networkSei (SEI) $ 0.137427
  • story-2Story (IP) $ 2.56
  • morphoMorpho (MORPHO) $ 1.53
  • bonkBonk (BONK) $ 0.000010
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.38
  • jupiter-exchange-solanaJupiter (JUP) $ 0.247784
  • ousgOUSG (OUSG) $ 113.47
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.02
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,283.60
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,234.07
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 90,745.00
  • dashDash (DASH) $ 57.68
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.276288
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.011165
  • clbtcclBTC (CLBTC) $ 90,661.00
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.10
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 158.62
  • spx6900SPX6900 (SPX) $ 0.692262
  • optimismOptimism (OP) $ 0.332833
  • starknetStarknet (STRK) $ 0.137753
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999802
  • usdaiUSDai (USDAI) $ 1.00
  • aerodrome-financeAerodrome Finance (AERO) $ 0.685538
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.943783
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999995
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 3,160.37
  • curve-dao-tokenCurve DAO (CRV) $ 0.428270
  • beldexBeldex (BDX) $ 0.081347
  • injective-protocolInjective (INJ) $ 5.99
  • lido-daoLido DAO (LDO) $ 0.666990
  • blockstackStacks (STX) $ 0.318816
  • tbtctBTC (TBTC) $ 90,690.00
  • newton-projectAB (AB) $ 0.006313
  • msolMarinade Staked SOL (MSOL) $ 184.51
  • celestiaCelestia (TIA) $ 0.650955
  • usual-usdUsual USD (USD0) $ 0.998751
  • the-graphThe Graph (GRT) $ 0.051254
  • tezosTezos (XTZ) $ 0.506915
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 3,039.36
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 3,040.00
  • ether-fiEther.fi (ETHFI) $ 0.828440
  • true-usdTrueUSD (TUSD) $ 0.996066
  • cgeth-hashkey-cloudcgETH Hashkey Cloud (CGETH.HASH) $ 2,460.42
  • myx-financeMYX Finance (MYX) $ 2.55
  • mantle-bridged-usdt-mantleMantle Bridged USDT (Mantle) (USDT) $ 1.00
  • iotaIOTA (IOTA) $ 0.114312
  • usddUSDD (USDD) $ 1.00
  • flokiFLOKI (FLOKI) $ 0.000049
  • kaiaKaia (KAIA) $ 0.079973
  • gtethGTETH (GTETH) $ 3,038.93
  • telcoinTelcoin (TEL) $ 0.004915
  • stader-ethxStader ETHx (ETHX) $ 3,267.61
  • pendlePendle (PENDLE) $ 2.77
  • ethereum-name-serviceEthereum Name Service (ENS) $ 11.82
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.21
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 3,195.79
  • pyth-networkPyth Network (PYTH) $ 0.076126
  • plasmaPlasma (XPL) $ 0.220951
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.05
  • conflux-tokenConflux (CFX) $ 0.083166
  • lorenzo-wrapped-bitcoinLorenzo Wrapped Bitcoin (ENZOBTC) $ 90,454.00
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.11
  • sonic-3Sonic (S) $ 0.111143
  • decredDecred (DCR) $ 24.43
  • ghoGHO (GHO) $ 0.999979
  • bitcoin-svBitcoin SV (BSV) $ 20.83
  • the-sandboxThe Sandbox (SAND) $ 0.158844
  • bittorrentBitTorrent (BTT) $ 0.00000042
  • sun-tokenSun Token (SUN) $ 0.021192
  • usdbUSDB (USDB) $ 1.00
  • doublezeroDoubleZero (2Z) $ 0.116631
  • heliumHelium (HNT) $ 2.17
  • swethSwell Ethereum (SWETH) $ 3,324.46
  • basic-attention-tokenBasic Attention (BAT) $ 0.270187
  • sbtc-2sBTC (SBTC) $ 90,283.00
  • monadMonad (MON) $ 0.036367
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,363.43
  • justJUST (JST) $ 0.039370
  • apenftAINFT (NFT) $ 0.00000039
  • wrapped-hypeWrapped HYPE (WHYPE) $ 34.79
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.150046
  • merlin-chainMerlin Chain (MERL) $ 0.363912
  • flowFlow (FLOW) $ 0.235459
  • dogwifcoindogwifhat (WIF) $ 0.378731
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 90,871.00
  • benqi-liquid-staked-avaxBENQI Liquid Staked AVAX (SAVAX) $ 18.30
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,039.66
  • galaGALA (GALA) $ 0.007892
  • jasmycoinJasmyCoin (JASMY) $ 0.007414
  • olympusOlympus (OHM) $ 22.35
  • ultimaUltima (ULTIMA) $ 3,658.65
  • fasttokenFasttoken (FTN) $ 0.819957

Chinese Hackers Suspected of Spying on US Undercover Agents: Report

0 87

Chinese Hackers Suspected of Spying on US Undercover Agents: Report

A group of hackers exploited a zero-day vulnerability in Versa Director—software used by a number of internet service providers (ISPs) to secure their network operations—and were able to compromise several internet companies in the U.S. and abroad, according to Black Lotus Labs, the threat research and operations arm of Lumen Technologies.

Lumen believes the attacks may come from China.

“Based on known and observed tactics and techniques, Black Lotus Labs attributes the zero-day exploitation of CVE-2024-39717 and operational use of the VersaMem web shell with moderate confidence to the Chinese state-sponsored threat actors known as Volt Typhoon and Bronze Silhouette.” Lumen said.

Lumen’s researchers identified four U.S. victims and one foreign victim. According to the Washington Post, “targets are believed to include government and military personnel working undercover and groups of strategic interest to China.”

China denied such allegations. “Volt Typhoon’ is actually a ransomware cybercriminal group who calls itself the ‘Dark Power’ and is not sponsored by any state or region,” embassy spokesman Liu Pengyu told the Washington Post. The same statement was shared by Lin Jian, spokesperson of China’s Ministry of Foreign Affairs, on April 15 with the Global Times.

The exploit is “likely ongoing against unpatched Versa Director systems,” according to the researchers.

According to the findings, Volt Typhoon used a specialized web shell called “VersaMem” to capture user login details. VersaMem, a complex piece of malicious software, works by attaching itself to different processes and manipulating the Java code of vulnerable servers. It operates entirely in memory, making it particularly difficult to detect.

The exploit targeted Versa Director servers. These servers are often used by internet service providers and managed service providers, making them an attractive target for threat actors seeking to extend their reach through enterprise network management setups.

Versa Networks acknowledged the vulnerability on Monday, confirming it had been exploited “in at least one known instance.”

Lumen says the VersaMem web shell was first uploaded to malware aggregator VirusTotal on June 7, just days before the earliest observed exploitation. The malware was compiled using Apache Maven, with comments in Chinese characters discovered in the code. As of mid-August, it still had zero detections by antivirus software.

Brandon Wales, former executive director of the U.S. Cybersecurity and Infrastructure Security Agency (CISA), recently told The Record that Chinese hackers have improved their abilities to target key U.S. facilities and emphasized the need to increase investments in cybersecurity.

“China continues to target U.S. critical infrastructure,” he said in an interview. “The exposing of the Volt Typhoon efforts has obviously resulted in changes in tactics, the tradecraft that they’re using, but we know that they are continuing every day to try to compromise U.S. critical infrastructure.”

The cybersecurity firm emphasized the severity of the vulnerability and the sophistication of the attackers.

Meanwhile, Black Lotus Labs stressed that any operation relying on Versa Director to upgrade the software “to version 22.1.4 or later.”

Source

Leave A Reply

Your email address will not be published.