• bitcoinBitcoin (BTC) $ 108,047.00
  • ethereumEthereum (ETH) $ 2,537.99
  • tetherTether (USDT) $ 0.999941
  • xrpXRP (XRP) $ 2.27
  • bnbBNB (BNB) $ 660.17
  • solanaSolana (SOL) $ 148.49
  • usd-coinUSDC (USDC) $ 0.999882
  • tronTRON (TRX) $ 0.286335
  • dogecoinDogecoin (DOGE) $ 0.167000
  • staked-etherLido Staked Ether (STETH) $ 2,536.34
  • cardanoCardano (ADA) $ 0.577211
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 108,051.00
  • hyperliquidHyperliquid (HYPE) $ 38.44
  • wrapped-stethWrapped stETH (WSTETH) $ 3,061.86
  • suiSui (SUI) $ 2.84
  • bitcoin-cashBitcoin Cash (BCH) $ 493.88
  • chainlinkChainlink (LINK) $ 13.35
  • leo-tokenLEO Token (LEO) $ 9.03
  • stellarStellar (XLM) $ 0.248064
  • avalanche-2Avalanche (AVAX) $ 17.86
  • usdsUSDS (USDS) $ 0.999992
  • wrapped-eethWrapped eETH (WEETH) $ 2,718.58
  • shiba-inuShiba Inu (SHIB) $ 0.000012
  • the-open-networkToncoin (TON) $ 2.74
  • hedera-hashgraphHedera (HBAR) $ 0.157221
  • wethWETH (WETH) $ 2,537.74
  • litecoinLitecoin (LTC) $ 85.91
  • whitebitWhiteBIT Coin (WBT) $ 45.01
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.999772
  • moneroMonero (XMR) $ 314.89
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 108,004.00
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • polkadotPolkadot (DOT) $ 3.35
  • bitget-tokenBitget Token (BGB) $ 4.30
  • uniswapUniswap (UNI) $ 7.32
  • aaveAave (AAVE) $ 280.39
  • pepePepe (PEPE) $ 0.000010
  • daiDai (DAI) $ 1.00
  • pi-networkPi Network (PI) $ 0.457167
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.18
  • okbOKB (OKB) $ 48.24
  • bittensorBittensor (TAO) $ 318.44
  • aptosAptos (APT) $ 4.43
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • nearNEAR Protocol (NEAR) $ 2.14
  • jito-staked-solJito Staked SOL (JITOSOL) $ 180.40
  • internet-computerInternet Computer (ICP) $ 4.75
  • ethereum-classicEthereum Classic (ETC) $ 16.44
  • crypto-com-chainCronos (CRO) $ 0.080618
  • ondo-financeOndo (ONDO) $ 0.776071
  • susdssUSDS (SUSDS) $ 1.06
  • usd1-wlfiUSD1 (USD1) $ 0.999795
  • kaspaKaspa (KAS) $ 0.074888
  • fasttokenFasttoken (FTN) $ 4.43
  • mantleMantle (MNT) $ 0.565215
  • gatechain-tokenGate (GT) $ 15.52
  • cosmosCosmos Hub (ATOM) $ 4.03
  • vechainVeChain (VET) $ 0.020290
  • bonkBonk (BONK) $ 0.000023
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.664307
  • official-trumpOfficial Trump (TRUMP) $ 8.57
  • skySky (SKY) $ 0.079066
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.183805
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 108,089.00
  • arbitrumArbitrum (ARB) $ 0.326939
  • render-tokenRender (RENDER) $ 3.13
  • ethenaEthena (ENA) $ 0.254673
  • quant-networkQuant (QNT) $ 106.59
  • filecoinFilecoin (FIL) $ 2.27
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,536.86
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.47
  • algorandAlgorand (ALGO) $ 0.174227
  • worldcoin-wldWorldcoin (WLD) $ 0.864710
  • usdtbUSDtb (USDTB) $ 0.999894
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.998016
  • sei-networkSei (SEI) $ 0.255933
  • kucoin-sharesKuCoin (KCS) $ 11.04
  • binance-staked-solBinance Staked SOL (BNSOL) $ 157.58
  • usdt0USDT0 (USDT0) $ 1.00
  • jupiter-exchange-solanaJupiter (JUP) $ 0.432902
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,661.15
  • nexoNEXO (NEXO) $ 1.21
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,890.68
  • spx6900SPX6900 (SPX) $ 1.25
  • flare-networksFlare (FLR) $ 0.016277
  • celestiaCelestia (TIA) $ 1.57
  • fartcoinFartcoin (FARTCOIN) $ 1.09
  • polygon-bridged-usdt-polygonPolygon Bridged USDT (Polygon) (USDT) $ 0.999920
  • xdce-crowd-saleXDC Network (XDC) $ 0.064948
  • injective-protocolInjective (INJ) $ 10.38
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999748
  • sonic-3Sonic (S) $ 0.306354
  • blockstackStacks (STX) $ 0.643972
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 1.48
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,713.55
  • syrupusdcSyrupUSDC (SYRUPUSDC) $ 1.11
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 2,665.86
  • optimismOptimism (OP) $ 0.539700
  • pax-goldPAX Gold (PAXG) $ 3,342.01
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.014532
  • story-2Story (IP) $ 3.18
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 107,777.00
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 107,901.00
  • paypal-usdPayPal USD (PYUSD) $ 0.999960
  • wbnbWrapped BNB (WBNB) $ 660.10
  • kaiaKaia (KAIA) $ 0.149868
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,676.16
  • clbtcclBTC (CLBTC) $ 109,014.00
  • dogwifcoindogwifhat (WIF) $ 0.832708
  • tether-goldTether Gold (XAUT) $ 3,335.85
  • the-graphThe Graph (GRT) $ 0.082518
  • flokiFLOKI (FLOKI) $ 0.000081
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.24
  • immutable-xImmutable (IMX) $ 0.415135
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 166.66
  • vaultaVaulta (A) $ 0.489686
  • msolMarinade Staked SOL (MSOL) $ 194.17
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 2,739.09
  • ousgOUSG (OUSG) $ 111.71
  • curve-dao-tokenCurve DAO (CRV) $ 0.505370
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.74
  • theta-tokenTheta Network (THETA) $ 0.681185
  • usdx-money-usdxStables Labs USDX (USDX) $ 0.998061
  • lido-daoLido DAO (LDO) $ 0.724671
  • jito-governance-tokenJito (JTO) $ 1.86
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.09
  • galaGALA (GALA) $ 0.014023
  • zcashZcash (ZEC) $ 38.50
  • ethereum-name-serviceEthereum Name Service (ENS) $ 18.46
  • saros-financeSaros (SAROS) $ 0.232474
  • wrapped-hypeWrapped HYPE (WHYPE) $ 38.45
  • iotaIOTA (IOTA) $ 0.156850
  • bittorrentBitTorrent (BTT) $ 0.00000061
  • the-sandboxThe Sandbox (SAND) $ 0.242189
  • solv-protocol-solvbtc-bbnSolv Protocol Staked BTC (XSOLVBTC) $ 107,449.00
  • usual-usdUsual USD (USD0) $ 0.997778
  • jasmycoinJasmyCoin (JASMY) $ 0.012089
  • raydiumRaydium (RAY) $ 2.13
  • aerodrome-financeAerodrome Finance (AERO) $ 0.670067
  • super-oethSuper OETH (SUPEROETH) $ 2,535.96
  • tbtctBTC (TBTC) $ 108,048.00
  • newton-projectAB (AB) $ 0.008370
  • pendlePendle (PENDLE) $ 3.38
  • syrupMaple Finance (SYRUP) $ 0.513477
  • walrus-2Walrus (WAL) $ 0.399170
  • pyth-networkPyth Network (PYTH) $ 0.095228
  • mantle-restaked-ethMantle Restaked ETH (CMETH) $ 2,712.76
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,537.96
  • tezosTezos (XTZ) $ 0.519122
  • falcon-financeFalcon USD (USDF) $ 0.999880
  • cgeth-hashkey-cloudcgETH Hashkey Cloud (CGETH.HASH) $ 2,657.24
  • flowFlow (FLOW) $ 0.323835
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 108,075.00
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,538.37
  • decentralandDecentraland (MANA) $ 0.262206
  • bitcoin-svBitcoin SV (BSV) $ 24.96
  • true-usdTrueUSD (TUSD) $ 0.998387
  • coredaoorgCore (CORE) $ 0.485886
  • ripple-usdRipple USD (RLUSD) $ 0.999882
  • apecoinApeCoin (APE) $ 0.601756
  • staked-hypeStaked HYPE (STHYPE) $ 38.44
  • venomVenom (VENOM) $ 0.226392
  • bridged-usdc-polygon-pos-bridgeBridged USDC (Polygon PoS Bridge) (USDC.E) $ 0.999899
  • chain-2Onyxcoin (XCN) $ 0.013587
  • thorchainTHORChain (RUNE) $ 1.31
  • heliumHelium (HNT) $ 2.43
  • dexeDeXe (DEXE) $ 7.70
  • beldexBeldex (BDX) $ 0.061152
  • apenftAPENFT (NFT) $ 0.00000044
  • dog-go-to-the-moon-runeDog (Bitcoin) (DOG) $ 0.004334
  • morphoMorpho (MORPHO) $ 1.35
  • usddUSDD (USDD) $ 0.999919
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.166886
  • kavaKava (KAVA) $ 0.392764
  • based-brettBrett (BRETT) $ 0.041921
  • hashnote-usycCircle USYC (USYC) $ 1.09
  • usdbUSDB (USDB) $ 1.00
  • reserve-rights-tokenReserve Rights (RSR) $ 0.006952
  • starknetStarknet (STRK) $ 0.111218
  • stader-ethxStader ETHx (ETHX) $ 2,698.87
  • movementMovement (MOVE) $ 0.149895
  • dydx-chaindYdX (DYDX) $ 0.517373
  • compound-governance-tokenCompound (COMP) $ 40.61
  • neoNEO (NEO) $ 5.39
  • mantle-bridged-usdt-mantleMantle Bridged USDT (Mantle) (USDT) $ 1.00
  • elrond-erd-2MultiversX (EGLD) $ 13.22
  • conflux-tokenConflux (CFX) $ 0.073289
  • mog-coinMog Coin (MOG) $ 0.00000096
  • build-onBUILDon (B) $ 0.372047
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 2,533.43
  • ether-fi-staked-btcEther.fi Staked BTC (EBTC) $ 107,795.00
  • ecasheCash (XEC) $ 0.000018
  • ether-fiEther.fi (ETHFI) $ 0.959564
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 1.00
  • aioz-networkAIOZ Network (AIOZ) $ 0.302196
  • deepDeepBook (DEEP) $ 0.142700
  • kaitoKAITO (KAITO) $ 1.47
  • axie-infinityAxie Infinity (AXS) $ 2.12
  • eosEOS (EOS) $ 0.489287
  • eigenlayerEigenCloud (prev. EigenLayer) (EIGEN) $ 1.12

Cryptojacking hackers blackmails YouTubers; Lazarus’ new malware

0 28

Cryptojacking hackers blackmails YouTubers; Lazarus’ new malware

North Korea-linked Lazarus Group is on the prowl again, and this time, it has infected a new batch of JavaScript packages with malware that steals digital assets.

Elsewhere, a Kaspersky report has revealed that a group of cybercriminals have been blackmailing YouTubers into including cryptojacking malware on their video descriptions.

Lazarus targets the JavaScript ecosystem

Lazarus has revamped its attacks on the digital asset sector and is now targeting the JavaScript ecosystem, code security platform Socket reveals.

In a recent report, Socket revealed that the notorious hacker group has deployed six new malicious packages targeting the Node Packaging Manager (npm) ecosystem; npm is used to install and manage JavaScript packages. The malware is designed to steal digital asset data and other credentials, as well as deploy a backdoor for future exploits.

Unsuspecting victims had downloaded the six packages 330 times by last week. Lazarus has designed them to mimic widely trusted libraries that developers have been using for years, aligning with the hacker group’s typosquatting tactic. The group even maintains GitHub repositories for five of the six malicious packages, which enhances their perceived legitimacy; Socket has since petitioned GitHub for their removal.

The Socket team admitted that it’s nearly impossible to attribute the malware to Lazarus “as absolute attribution is inherently difficult.” However, they bear the hallmarks of the group’s tactics and techniques. This includes using similar obfuscation techniques, script functionality, command and control mechanisms, and data theft techniques to other past Lazarus attacks.

The security firm revealed that once installed, the malware goes through browser profiles on Chrome, Firefox and Brave, as well as keychain archives on macOS, to extract sensitive files, such as log-in data. It also extracts digital asset wallets, with Exodus wallet and Solana-based applications being especially vulnerable.

This tactic isn’t new for Lazarus. The group has used it repeatedly to infiltrate both personal and corporate networks and wipe their digital asset wallets clean. In previous attacks, the group posted job vacancies on LinkedIn, luring unsuspecting applicants to click on malicious links.

While the North Korean group has been involved in many high-profile heists, its most recent is the largest and most daring. Lazarus was credited with the $1.4 billion hack of popular exchange Bybit, the largest ever in the digital asset world. Cybersecurity sleuths have since discovered that the group’s entry route was via malware planted in Safe’s online code. Safe is a digital asset wallet provider that Bybit used to secure users’ assets.

Cryptojackers blackmailing YouTubers

In a separate report, cybersecurity firm Kaspersky has revealed that cybercriminals have been blackmailing YouTubers for increased exposure.

The criminals are behind malware that’s disguised as a tool to bypass geo-restrictions and other local blocks to access the internet. Such tools have become increasingly popular as some governments, such as Russia’s and China’s, have imposed internet blocks in some regions. In the past six months, Kaspersky has detected over 2.4 million drivers related to bypassing tools.

These drivers have become a malware hotspot. Usually, they require users to disable their PCs’ security solutions, allowing attackers to easily install undetected malware. Popular attack vectors have included cryptojacking software, which mines digital assets without a user’s knowledge, as well as remote access tools (RATs) and other popular credential stealers.

These attackers are now targeting YouTubers to reach a wider target audience, Kaspersky found. In one instance, they targeted a YouTuber with over 60,000 subscribers whose videos centered on bypassing internet blocks. The attackers reported his videos for alleged copyright infringement before reaching out to him and demanding that he include a link to their resources so they could withdraw the copyright claim.

The YouTuber complied, unaware that the link was to a malicious website containing cryptojacking malware and other stealers.

Another YouTuber with 340,000 subscribers was also similarly targeted, as was a popular Telegram channel.

The cryptojacking malware is based on XMRig, an open-source miner that criminals have long used to illegally mine digital assets on victims’ PCs. It can mine Ether, Ethereum Classic, Monero and other smaller digital assets. The malware can switch on and off to avoid detection and be controlled remotely.

While cryptojacking isn’t as widespread as it once was, some criminals are still targeting millions of devices. Two weeks ago, a report by CyberArk revealed that one cryptojacking strain had infected over 750,000 unique digital asset addresses. Another recent report showed that cryptojackers were even targeting federal agencies, infiltrating USAID machines to mine ‘crypto’ last fall.

Watch: Cybersecurity fundamentals in today’s digital age with AI & Web3

title=”YouTube video player” frameborder=”0″ allow=”accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share” referrerpolicy=”strict-origin-when-cross-origin” allowfullscreen=””>

Source

Leave A Reply

Your email address will not be published.