• bitcoinBitcoin (BTC) $ 90,634.00
  • ethereumEthereum (ETH) $ 3,091.60
  • tetherTether (USDT) $ 0.998767
  • xrpXRP (XRP) $ 2.09
  • bnbBNB (BNB) $ 901.27
  • solanaSolana (SOL) $ 136.30
  • usd-coinUSDC (USDC) $ 0.999903
  • tronTRON (TRX) $ 0.297455
  • staked-etherLido Staked Ether (STETH) $ 3,092.62
  • dogecoinDogecoin (DOGE) $ 0.140069
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.03
  • cardanoCardano (ADA) $ 0.389630
  • bitcoin-cashBitcoin Cash (BCH) $ 638.39
  • wrapped-stethWrapped stETH (WSTETH) $ 3,784.23
  • whitebitWhiteBIT Coin (WBT) $ 55.35
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 3,361.75
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 90,182.00
  • wrapped-eethWrapped eETH (WEETH) $ 3,356.91
  • usdsUSDS (USDS) $ 0.999622
  • chainlinkChainlink (LINK) $ 13.17
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998794
  • moneroMonero (XMR) $ 457.21
  • leo-tokenLEO Token (LEO) $ 9.04
  • wethWETH (WETH) $ 3,092.51
  • stellarStellar (XLM) $ 0.226767
  • suiSui (SUI) $ 1.83
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 90,605.00
  • ethena-usdeEthena USDe (USDE) $ 0.999215
  • zcashZcash (ZEC) $ 380.04
  • litecoinLitecoin (LTC) $ 81.45
  • avalanche-2Avalanche (AVAX) $ 13.81
  • hyperliquidHyperliquid (HYPE) $ 24.58
  • hedera-hashgraphHedera (HBAR) $ 0.119516
  • shiba-inuShiba Inu (SHIB) $ 0.000009
  • canton-networkCanton (CC) $ 0.130660
  • usdt0USDT0 (USDT0) $ 0.998906
  • susdssUSDS (SUSDS) $ 1.08
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.167707
  • daiDai (DAI) $ 0.999428
  • the-open-networkToncoin (TON) $ 1.75
  • crypto-com-chainCronos (CRO) $ 0.100970
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.21
  • paypal-usdPayPal USD (PYUSD) $ 0.999762
  • uniswapUniswap (UNI) $ 5.48
  • polkadotPolkadot (DOT) $ 2.10
  • usd1-wlfiUSD1 (USD1) $ 0.999533
  • mantleMantle (MNT) $ 0.981619
  • memecoreMemeCore (M) $ 1.67
  • rainRain (RAIN) $ 0.008421
  • bittensorBittensor (TAO) $ 289.14
  • pepePepe (PEPE) $ 0.000006
  • aaveAave (AAVE) $ 165.33
  • bitget-tokenBitget Token (BGB) $ 3.52
  • tether-goldTether Gold (XAUT) $ 4,499.62
  • okbOKB (OKB) $ 110.38
  • nearNEAR Protocol (NEAR) $ 1.70
  • falcon-financeFalcon USD (USDF) $ 0.997204
  • jito-staked-solJito Staked SOL (JITOSOL) $ 170.98
  • ethereum-classicEthereum Classic (ETC) $ 12.57
  • binance-peg-wethBinance-Peg WETH (WETH) $ 3,091.84
  • ethenaEthena (ENA) $ 0.229603
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.168014
  • pi-networkPi Network (PI) $ 0.208754
  • internet-computerInternet Computer (ICP) $ 3.19
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • pax-goldPAX Gold (PAXG) $ 4,511.78
  • aster-2Aster (ASTER) $ 0.714556
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.74
  • htx-daoHTX DAO (HTX) $ 0.000002
  • worldcoin-wldWorldcoin (WLD) $ 0.576693
  • hashnote-usycCircle USYC (USYC) $ 1.11
  • global-dollarGlobal Dollar (USDG) $ 0.999522
  • binance-staked-solBinance Staked SOL (BNSOL) $ 149.06
  • kucoin-sharesKuCoin (KCS) $ 11.21
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.15
  • ripple-usdRipple USD (RLUSD) $ 0.999687
  • pump-funPump.fun (PUMP) $ 0.002334
  • aptosAptos (APT) $ 1.82
  • hash-2Provenance Blockchain (HASH) $ 0.025343
  • bfusdBFUSD (BFUSD) $ 0.998492
  • skySky (SKY) $ 0.057350
  • wbnbWrapped BNB (WBNB) $ 901.26
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999802
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,571.16
  • ondo-financeOndo (ONDO) $ 0.403190
  • cosmosCosmos Hub (ATOM) $ 2.61
  • kaspaKaspa (KAS) $ 0.046625
  • render-tokenRender (RENDER) $ 2.34
  • arbitrumArbitrum (ARB) $ 0.209823
  • algorandAlgorand (ALGO) $ 0.133683
  • gatechain-tokenGate (GT) $ 10.26
  • midnight-3Midnight (NIGHT) $ 0.068647
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,281.73
  • filecoinFilecoin (FIL) $ 1.49
  • quant-networkQuant (QNT) $ 74.41
  • official-trumpOfficial Trump (TRUMP) $ 5.41
  • bridged-wrapped-lido-staked-ether-scrollBridged Wrapped Lido Staked Ether (Scroll) (WSTETH) $ 3,775.84
  • vechainVeChain (VET) $ 0.011787
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 90,520.00
  • ignition-fbtcFunction FBTC (FBTC) $ 90,824.00
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 90,356.00
  • nexoNEXO (NEXO) $ 0.956273
  • myx-financeMYX Finance (MYX) $ 4.94
  • bonkBonk (BONK) $ 0.000011
  • flare-networksFlare (FLR) $ 0.011206
  • xdce-crowd-saleXDC Network (XDC) $ 0.048461
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 3,399.36
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.02
  • usddUSDD (USDD) $ 0.998651
  • usdtbUSDtb (USDTB) $ 0.999496
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,356.99
  • ousgOUSG (OUSG) $ 113.92
  • sei-networkSei (SEI) $ 0.121097
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.95
  • wrappedm-by-m0WrappedM by M^0 (WM) $ 0.999793
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.011985
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999632
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 90,491.00
  • lighterLighter (LIT) $ 2.85
  • morphoMorpho (MORPHO) $ 1.30
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 1.07
  • clbtcclBTC (CLBTC) $ 90,541.00
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,302.82
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.11
  • blockstackStacks (STX) $ 0.373907
  • story-2Story (IP) $ 2.00
  • jupiter-exchange-solanaJupiter (JUP) $ 0.213026
  • beldexBeldex (BDX) $ 0.088523
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.99
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 158.45
  • usdaiUSDai (USDAI) $ 1.00
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 3,092.55
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.281390
  • wrapped-flareWrapped Flare (WFLR) $ 0.011205
  • tezosTezos (XTZ) $ 0.594884
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 3,274.34
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999949
  • optimismOptimism (OP) $ 0.319351
  • curve-dao-tokenCurve DAO (CRV) $ 0.410362
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.22
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 24.81
  • c8ntinuumc8ntinuum (CTM) $ 0.126009
  • usual-usdUsual USD (USD0) $ 0.992648
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 3,092.48
  • spx6900SPX6900 (SPX) $ 0.581467
  • lido-daoLido DAO (LDO) $ 0.636844
  • tbtctBTC (TBTC) $ 90,433.00
  • injective-protocolInjective (INJ) $ 5.20
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.11
  • flokiFLOKI (FLOKI) $ 0.000052
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.999321
  • aerodrome-financeAerodrome Finance (AERO) $ 0.542486
  • ghoGHO (GHO) $ 0.998733
  • gtethGTETH (GTETH) $ 3,092.74
  • true-usdTrueUSD (TUSD) $ 0.997250
  • ether-fiEther.fi (ETHFI) $ 0.738885
  • celestiaCelestia (TIA) $ 0.550327
  • fasttokenFasttoken (FTN) $ 1.08
  • msolMarinade Staked SOL (MSOL) $ 184.20
  • dashDash (DASH) $ 36.98
  • chilizChiliz (CHZ) $ 0.044840
  • syrupMaple Finance (SYRUP) $ 0.393675
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 3,311.52
  • stader-ethxStader ETHx (ETHX) $ 3,333.53
  • the-graphThe Graph (GRT) $ 0.041549
  • iotaIOTA (IOTA) $ 0.102958
  • jasmycoinJasmyCoin (JASMY) $ 0.008733
  • newton-projectAB (AB) $ 0.004476
  • wrapped-apecoinWrapped ApeCoin (WAPE) $ 0.213539
  • justJUST (JST) $ 0.043001
  • starknetStarknet (STRK) $ 0.082945
  • bittorrentBitTorrent (BTT) $ 0.00000042
  • pippinpippin (PIPPIN) $ 0.415456
  • sbtc-2sBTC (SBTC) $ 91,177.00
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,462.56
  • usdbUSDB (USDB) $ 0.998016
  • doublezeroDoubleZero (2Z) $ 0.116732
  • staked-aaveStaked Aave (STKAAVE) $ 164.28
  • ethereum-name-serviceEthereum Name Service (ENS) $ 10.46
  • conflux-tokenConflux (CFX) $ 0.076938
  • pyth-networkPyth Network (PYTH) $ 0.067979
  • sun-tokenSun Token (SUN) $ 0.020222
  • bitcoin-svBitcoin SV (BSV) $ 19.40
  • kaiaKaia (KAIA) $ 0.065684
  • dogwifcoindogwifhat (WIF) $ 0.381064
  • fartcoinFartcoin (FARTCOIN) $ 0.375855
  • trust-wallet-tokenTrust Wallet (TWT) $ 0.890599
  • chain-2Onyxcoin (XCN) $ 0.008642
  • apenftAINFT (NFT) $ 0.00000037
  • gnosisGnosis (GNO) $ 137.85
  • wrapped-stx-velarWrapped STX (Velar) (WSTX) $ 0.359835
  • cap-usdCap USD (CUSD) $ 0.999746
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.140078
  • crvusdcrvUSD (CRVUSD) $ 0.998834
  • euro-coinEURC (EURC) $ 1.16
  • olympusOlympus (OHM) $ 21.67
  • telcoinTelcoin (TEL) $ 0.003708
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 90,630.00
  • pendlePendle (PENDLE) $ 2.08

Cryptojacking hackers blackmails YouTubers; Lazarus’ new malware

0 87

Cryptojacking hackers blackmails YouTubers; Lazarus’ new malware

North Korea-linked Lazarus Group is on the prowl again, and this time, it has infected a new batch of JavaScript packages with malware that steals digital assets.

Elsewhere, a Kaspersky report has revealed that a group of cybercriminals have been blackmailing YouTubers into including cryptojacking malware on their video descriptions.

Lazarus targets the JavaScript ecosystem

Lazarus has revamped its attacks on the digital asset sector and is now targeting the JavaScript ecosystem, code security platform Socket reveals.

In a recent report, Socket revealed that the notorious hacker group has deployed six new malicious packages targeting the Node Packaging Manager (npm) ecosystem; npm is used to install and manage JavaScript packages. The malware is designed to steal digital asset data and other credentials, as well as deploy a backdoor for future exploits.

Unsuspecting victims had downloaded the six packages 330 times by last week. Lazarus has designed them to mimic widely trusted libraries that developers have been using for years, aligning with the hacker group’s typosquatting tactic. The group even maintains GitHub repositories for five of the six malicious packages, which enhances their perceived legitimacy; Socket has since petitioned GitHub for their removal.

The Socket team admitted that it’s nearly impossible to attribute the malware to Lazarus “as absolute attribution is inherently difficult.” However, they bear the hallmarks of the group’s tactics and techniques. This includes using similar obfuscation techniques, script functionality, command and control mechanisms, and data theft techniques to other past Lazarus attacks.

The security firm revealed that once installed, the malware goes through browser profiles on Chrome, Firefox and Brave, as well as keychain archives on macOS, to extract sensitive files, such as log-in data. It also extracts digital asset wallets, with Exodus wallet and Solana-based applications being especially vulnerable.

This tactic isn’t new for Lazarus. The group has used it repeatedly to infiltrate both personal and corporate networks and wipe their digital asset wallets clean. In previous attacks, the group posted job vacancies on LinkedIn, luring unsuspecting applicants to click on malicious links.

While the North Korean group has been involved in many high-profile heists, its most recent is the largest and most daring. Lazarus was credited with the $1.4 billion hack of popular exchange Bybit, the largest ever in the digital asset world. Cybersecurity sleuths have since discovered that the group’s entry route was via malware planted in Safe’s online code. Safe is a digital asset wallet provider that Bybit used to secure users’ assets.

Cryptojackers blackmailing YouTubers

In a separate report, cybersecurity firm Kaspersky has revealed that cybercriminals have been blackmailing YouTubers for increased exposure.

The criminals are behind malware that’s disguised as a tool to bypass geo-restrictions and other local blocks to access the internet. Such tools have become increasingly popular as some governments, such as Russia’s and China’s, have imposed internet blocks in some regions. In the past six months, Kaspersky has detected over 2.4 million drivers related to bypassing tools.

These drivers have become a malware hotspot. Usually, they require users to disable their PCs’ security solutions, allowing attackers to easily install undetected malware. Popular attack vectors have included cryptojacking software, which mines digital assets without a user’s knowledge, as well as remote access tools (RATs) and other popular credential stealers.

These attackers are now targeting YouTubers to reach a wider target audience, Kaspersky found. In one instance, they targeted a YouTuber with over 60,000 subscribers whose videos centered on bypassing internet blocks. The attackers reported his videos for alleged copyright infringement before reaching out to him and demanding that he include a link to their resources so they could withdraw the copyright claim.

The YouTuber complied, unaware that the link was to a malicious website containing cryptojacking malware and other stealers.

Another YouTuber with 340,000 subscribers was also similarly targeted, as was a popular Telegram channel.

The cryptojacking malware is based on XMRig, an open-source miner that criminals have long used to illegally mine digital assets on victims’ PCs. It can mine Ether, Ethereum Classic, Monero and other smaller digital assets. The malware can switch on and off to avoid detection and be controlled remotely.

While cryptojacking isn’t as widespread as it once was, some criminals are still targeting millions of devices. Two weeks ago, a report by CyberArk revealed that one cryptojacking strain had infected over 750,000 unique digital asset addresses. Another recent report showed that cryptojackers were even targeting federal agencies, infiltrating USAID machines to mine ‘crypto’ last fall.

Watch: Cybersecurity fundamentals in today’s digital age with AI & Web3

title=”YouTube video player” frameborder=”0″ allow=”accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share” referrerpolicy=”strict-origin-when-cross-origin” allowfullscreen=””>

Source

Leave A Reply

Your email address will not be published.