• bitcoinBitcoin (BTC) $ 90,106.00
  • ethereumEthereum (ETH) $ 3,132.90
  • tetherTether (USDT) $ 0.999533
  • xrpXRP (XRP) $ 2.02
  • bnbBNB (BNB) $ 882.97
  • usd-coinUSDC (USDC) $ 0.999837
  • staked-etherLido Staked Ether (STETH) $ 3,133.98
  • tronTRON (TRX) $ 0.287952
  • dogecoinDogecoin (DOGE) $ 0.143436
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.03
  • cardanoCardano (ADA) $ 0.391058
  • wrapped-stethWrapped stETH (WSTETH) $ 3,834.96
  • whitebitWhiteBIT Coin (WBT) $ 57.42
  • bitcoin-cashBitcoin Cash (BCH) $ 606.58
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 89,946.00
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 3,408.38
  • wrapped-eethWrapped eETH (WEETH) $ 3,401.52
  • chainlinkChainlink (LINK) $ 13.37
  • usdsUSDS (USDS) $ 0.999713
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.999412
  • leo-tokenLEO Token (LEO) $ 9.58
  • wethWETH (WETH) $ 3,135.07
  • zcashZcash (ZEC) $ 485.49
  • moneroMonero (XMR) $ 420.81
  • stellarStellar (XLM) $ 0.218818
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 90,129.00
  • ethena-usdeEthena USDe (USDE) $ 0.999429
  • litecoinLitecoin (LTC) $ 81.92
  • suiSui (SUI) $ 1.63
  • avalanche-2Avalanche (AVAX) $ 13.93
  • hyperliquidHyperliquid (HYPE) $ 24.50
  • canton-networkCanton (CC) $ 0.148521
  • hedera-hashgraphHedera (HBAR) $ 0.121629
  • shiba-inuShiba Inu (SHIB) $ 0.000008
  • usdt0USDT0 (USDT0) $ 0.999183
  • the-open-networkToncoin (TON) $ 1.81
  • daiDai (DAI) $ 0.999224
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.152822
  • susdssUSDS (SUSDS) $ 1.08
  • uniswapUniswap (UNI) $ 6.07
  • crypto-com-chainCronos (CRO) $ 0.097858
  • paypal-usdPayPal USD (PYUSD) $ 0.999852
  • polkadotPolkadot (DOT) $ 2.14
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.21
  • usd1-wlfiUSD1 (USD1) $ 1.00
  • mantleMantle (MNT) $ 1.02
  • rainRain (RAIN) $ 0.008181
  • memecoreMemeCore (M) $ 1.53
  • pepePepe (PEPE) $ 0.000006
  • aaveAave (AAVE) $ 165.62
  • bitget-tokenBitget Token (BGB) $ 3.50
  • bittensorBittensor (TAO) $ 248.41
  • okbOKB (OKB) $ 112.38
  • tether-goldTether Gold (XAUT) $ 4,330.24
  • falcon-financeFalcon USD (USDF) $ 0.997413
  • nearNEAR Protocol (NEAR) $ 1.69
  • ethereum-classicEthereum Classic (ETC) $ 12.55
  • binance-peg-wethBinance-Peg WETH (WETH) $ 3,133.47
  • jito-staked-solJito Staked SOL (JITOSOL) $ 166.36
  • ethenaEthena (ENA) $ 0.238231
  • aster-2Aster (ASTER) $ 0.748785
  • pi-networkPi Network (PI) $ 0.208307
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • internet-computerInternet Computer (ICP) $ 3.17
  • solanaSolana (SOL) $ 132.74
  • pax-goldPAX Gold (PAXG) $ 4,338.04
  • htx-daoHTX DAO (HTX) $ 0.000002
  • hashnote-usycCircle USYC (USYC) $ 1.11
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.67
  • global-dollarGlobal Dollar (USDG) $ 0.999755
  • midnight-3Midnight (NIGHT) $ 0.089146
  • worldcoin-wldWorldcoin (WLD) $ 0.552337
  • hash-2Provenance Blockchain (HASH) $ 0.027684
  • kucoin-sharesKuCoin (KCS) $ 11.02
  • skySky (SKY) $ 0.063174
  • aptosAptos (APT) $ 1.90
  • binance-staked-solBinance Staked SOL (BNSOL) $ 144.94
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.14
  • ripple-usdRipple USD (RLUSD) $ 0.999411
  • ondo-financeOndo (ONDO) $ 0.424336
  • pump-funPump.fun (PUMP) $ 0.002257
  • bfusdBFUSD (BFUSD) $ 0.999134
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,617.02
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999521
  • wbnbWrapped BNB (WBNB) $ 882.90
  • kaspaKaspa (KAS) $ 0.046177
  • gatechain-tokenGate (GT) $ 10.49
  • arbitrumArbitrum (ARB) $ 0.208883
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.112999
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,324.40
  • algorandAlgorand (ALGO) $ 0.127168
  • filecoinFilecoin (FIL) $ 1.48
  • cosmosCosmos Hub (ATOM) $ 2.17
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.02
  • bridged-wrapped-lido-staked-ether-scrollBridged Wrapped Lido Staked Ether (Scroll) (WSTETH) $ 3,828.53
  • official-trumpOfficial Trump (TRUMP) $ 5.02
  • vechainVeChain (VET) $ 0.011658
  • ignition-fbtcFunction FBTC (FBTC) $ 90,670.00
  • xdce-crowd-saleXDC Network (XDC) $ 0.051661
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 90,198.00
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 89,973.00
  • nexoNEXO (NEXO) $ 0.920837
  • flare-networksFlare (FLR) $ 0.010874
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 3,335.70
  • usddUSDD (USDD) $ 0.999698
  • usdtbUSDtb (USDTB) $ 0.999498
  • ousgOUSG (OUSG) $ 113.85
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.94
  • bonkBonk (BONK) $ 0.000009
  • sei-networkSei (SEI) $ 0.122347
  • render-tokenRender (RENDER) $ 1.52
  • wrappedm-by-m0WrappedM by M^0 (WM) $ 0.999143
  • myx-financeMYX Finance (MYX) $ 3.91
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999639
  • beldexBeldex (BDX) $ 0.095386
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,396.20
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 90,051.00
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • story-2Story (IP) $ 2.10
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,346.68
  • clbtcclBTC (CLBTC) $ 91,190.00
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.11
  • lighterLighter (LIT) $ 2.73
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.010788
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.01
  • jupiter-exchange-solanaJupiter (JUP) $ 0.211009
  • usdaiUSDai (USDAI) $ 1.00
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 3,301.09
  • wrapped-flareWrapped Flare (WFLR) $ 0.010874
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999774
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 154.16
  • morphoMorpho (MORPHO) $ 1.13
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 3,135.83
  • optimismOptimism (OP) $ 0.304806
  • curve-dao-tokenCurve DAO (CRV) $ 0.406293
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 24.70
  • tezosTezos (XTZ) $ 0.523987
  • c8ntinuumc8ntinuum (CTM) $ 0.128476
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.23
  • usual-usdUsual USD (USD0) $ 0.989617
  • dashDash (DASH) $ 42.57
  • tbtctBTC (TBTC) $ 90,099.00
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.229287
  • lido-daoLido DAO (LDO) $ 0.625129
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 3,134.78
  • aerodrome-financeAerodrome Finance (AERO) $ 0.577247
  • spx6900SPX6900 (SPX) $ 0.560128
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.999536
  • blockstackStacks (STX) $ 0.276853
  • ether-fiEther.fi (ETHFI) $ 0.771601
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.778018
  • gtethGTETH (GTETH) $ 3,136.24
  • ghoGHO (GHO) $ 0.999423
  • true-usdTrueUSD (TUSD) $ 0.998183
  • injective-protocolInjective (INJ) $ 4.91
  • fasttokenFasttoken (FTN) $ 1.09
  • flokiFLOKI (FLOKI) $ 0.000048
  • stader-ethxStader ETHx (ETHX) $ 3,377.04
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 3,356.20
  • msolMarinade Staked SOL (MSOL) $ 179.25
  • celestiaCelestia (TIA) $ 0.521749
  • chilizChiliz (CHZ) $ 0.043949
  • doublezeroDoubleZero (2Z) $ 0.128232
  • wrapped-apecoinWrapped ApeCoin (WAPE) $ 0.217553
  • starknetStarknet (STRK) $ 0.085573
  • newton-projectAB (AB) $ 0.004515
  • swethSwell Ethereum (SWETH) $ 3,478.08
  • syrupMaple Finance (SYRUP) $ 0.367310
  • sbtc-2sBTC (SBTC) $ 90,882.00
  • usdbUSDB (USDB) $ 0.999604
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,509.25
  • plasmaPlasma (XPL) $ 0.193703
  • conflux-tokenConflux (CFX) $ 0.077223
  • bittorrentBitTorrent (BTT) $ 0.00000040
  • iotaIOTA (IOTA) $ 0.094248
  • the-graphThe Graph (GRT) $ 0.037258
  • staked-aaveStaked Aave (STKAAVE) $ 163.27
  • ethereum-name-serviceEthereum Name Service (ENS) $ 10.24
  • justJUST (JST) $ 0.039117
  • pippinpippin (PIPPIN) $ 0.383485
  • telcoinTelcoin (TEL) $ 0.004034
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.11
  • pendlePendle (PENDLE) $ 2.20
  • trust-wallet-tokenTrust Wallet (TWT) $ 0.892273
  • sun-tokenSun Token (SUN) $ 0.019250
  • euro-coinEURC (EURC) $ 1.17
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.142896
  • bitcoin-svBitcoin SV (BSV) $ 18.15
  • pyth-networkPyth Network (PYTH) $ 0.062967
  • olympusOlympus (OHM) $ 21.95
  • gnosisGnosis (GNO) $ 135.90
  • apenftAINFT (NFT) $ 0.00000036
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 90,086.00
  • riverRiver (RIVER) $ 17.81
  • kaiaKaia (KAIA) $ 0.058685
  • benqi-liquid-staked-avaxBENQI Liquid Staked AVAX (SAVAX) $ 17.26
  • cap-usdCap USD (CUSD) $ 1.00
  • crvusdcrvUSD (CRVUSD) $ 0.998950
  • basic-attention-tokenBasic Attention (BAT) $ 0.223588
  • kinesis-goldKinesis Gold (KAU) $ 139.64

New Malware Is Draining Crypto Wallets Through Google Chrome

0 118

New Malware Is Draining Crypto Wallets Through Google Chrome

New malware is attacking cryptocurrency users, stealing wallet credentials and financial data by bypassing Chrome’s encryption and monitoring clipboard activity to intercept and redirect transactions.

New Malware Targets Crypto Users, Stealing Wallet Credentials and Financial Data

A newly discovered remote access trojan (RAT) known as StilachiRAT is specifically targeting cryptocurrency users by stealing digital wallet credentials and exfiltrating sensitive data. Microsoft Incident Response researchers detailed the malware’s capabilities in a report published on March 17, 2025, highlighting its focus on compromising Google Chrome users who store cryptocurrency wallet extensions and saved login credentials.

According to Microsoft:

StilachiRAT targets a list of specific cryptocurrency wallet extensions for the Google Chrome browser.

The malware scans for 20 different wallet extensions, including Bitget Wallet (formerly Bitkeep), Trust Wallet, Tronlink, Metamask (ethereum), Tokenpocket, BNB Chain Wallet, OKX Wallet, Sui Wallet, Braavos – Starknet Wallet, Coinbase Wallet, Leap Cosmos Wallet, Manta Wallet, Keplr, Phantom, Compass Wallet for Sei, Math Wallet, Fractal Wallet, Station Wallet, Confluxportal, and Plug, allowing attackers to extract digital asset information.

Beyond targeting cryptocurrency wallets, StilachiRAT also steals stored login credentials from Google Chrome by bypassing its encryption mechanisms. The report explains: “StilachiRAT extracts Google Chrome’s encryption_key from the local state file in a user’s directory. However, since the key is encrypted when Chrome is first installed, it uses Windows APIs that rely on current user’s context to decrypt the master key. This allows access to the stored credentials in the password vault.”

This enables attackers to retrieve usernames and passwords associated with financial accounts, further increasing the risk to victims’ digital assets. Additionally, StilachiRAT establishes a command-and-control (C2) connection, allowing remote operators to execute commands, manipulate system processes, and remain persistent even after initial detection.

The malware also continuously monitors clipboard data to extract cryptocurrency keys and sensitive financial information. Microsoft’s report notes:

Clipboard monitoring is continuous, with targeted searches for sensitive information such as passwords, cryptocurrency keys, and potentially personal identifiers.

By scanning for specific patterns linked to cryptocurrency addresses, StilachiRAT can intercept and replace copied wallet addresses, redirecting transactions to an attacker-controlled destination. To mitigate the risk, Microsoft advises users to implement security measures such as enabling Microsoft Defender protections, using secure browsers, and avoiding unverified downloads. As the threat landscape evolves, cybersecurity experts urge crypto holders to stay vigilant against emerging malware designed to exploit digital assets.

Source

Leave A Reply

Your email address will not be published.