• bitcoinBitcoin (BTC) $ 72,872.00
  • ethereumEthereum (ETH) $ 2,238.81
  • tetherTether (USDT) $ 1.00
  • xrpXRP (XRP) $ 1.35
  • bnbBNB (BNB) $ 606.99
  • usd-coinUSDC (USDC) $ 0.999941
  • solanaSolana (SOL) $ 84.45
  • tronTRON (TRX) $ 0.318021
  • staked-etherLido Staked Ether (STETH) $ 2,265.05
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.02
  • dogecoinDogecoin (DOGE) $ 0.093601
  • usdsUSDS (USDS) $ 0.999956
  • whitebitWhiteBIT Coin (WBT) $ 53.09
  • hyperliquidHyperliquid (HYPE) $ 41.86
  • cardanoCardano (ADA) $ 0.253506
  • wrapped-stethWrapped stETH (WSTETH) $ 2,779.67
  • leo-tokenLEO Token (LEO) $ 10.13
  • bitcoin-cashBitcoin Cash (BCH) $ 443.17
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 76,243.00
  • chainlinkChainlink (LINK) $ 9.06
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998762
  • moneroMonero (XMR) $ 339.56
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 2,466.93
  • zcashZcash (ZEC) $ 371.44
  • ethena-usdeEthena USDe (USDE) $ 0.999782
  • canton-networkCanton (CC) $ 0.146509
  • wrapped-eethWrapped eETH (WEETH) $ 2,465.31
  • stellarStellar (XLM) $ 0.153860
  • memecoreMemeCore (M) $ 2.76
  • susdssUSDS (SUSDS) $ 1.08
  • daiDai (DAI) $ 1.00
  • litecoinLitecoin (LTC) $ 54.74
  • usd1-wlfiUSD1 (USD1) $ 0.999471
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 76,366.00
  • avalanche-2Avalanche (AVAX) $ 9.33
  • paypal-usdPayPal USD (PYUSD) $ 0.999962
  • rainRain (RAIN) $ 0.008177
  • wethWETH (WETH) $ 2,268.37
  • hedera-hashgraphHedera (HBAR) $ 0.088312
  • suiSui (SUI) $ 0.937595
  • shiba-inuShiba Inu (SHIB) $ 0.000006
  • usdt0USDT0 (USDT0) $ 0.998824
  • the-open-networkToncoin (TON) $ 1.32
  • crypto-com-chainCronos (CRO) $ 0.069850
  • hashnote-usycCircle USYC (USYC) $ 1.12
  • tether-goldTether Gold (XAUT) $ 4,722.31
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.080050
  • bittensorBittensor (TAO) $ 262.44
  • pax-goldPAX Gold (PAXG) $ 4,732.43
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.22
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • mantleMantle (MNT) $ 0.684538
  • polkadotPolkadot (DOT) $ 1.30
  • global-dollarGlobal Dollar (USDG) $ 1.00
  • uniswapUniswap (UNI) $ 3.15
  • skySky (SKY) $ 0.078206
  • falcon-financeFalcon USD (USDF) $ 0.997469
  • okbOKB (OKB) $ 84.89
  • nearNEAR Protocol (NEAR) $ 1.35
  • pi-networkPi Network (PI) $ 0.167465
  • little-pepe-5Little Pepe (LILPEPE) $ 2.16
  • aster-2Aster (ASTER) $ 0.670354
  • htx-daoHTX DAO (HTX) $ 0.000002
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.15
  • usddUSDD (USDD) $ 1.00
  • pepePepe (PEPE) $ 0.000004
  • aaveAave (AAVE) $ 92.60
  • ripple-usdRipple USD (RLUSD) $ 1.00
  • internet-computerInternet Computer (ICP) $ 2.52
  • bitget-tokenBitget Token (BGB) $ 1.94
  • janus-henderson-anemoy-treasury-fundJanus Henderson Anemoy Treasury Fund (JTRSY) $ 1.10
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.12
  • ethereum-classicEthereum Classic (ETC) $ 8.45
  • bfusdBFUSD (BFUSD) $ 0.999891
  • ondo-financeOndo (ONDO) $ 0.254342
  • kucoin-sharesKuCoin (KCS) $ 8.49
  • gatechain-tokenGate (GT) $ 6.68
  • quant-networkQuant (QNT) $ 77.31
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.00
  • pump-funPump.fun (PUMP) $ 0.001841
  • render-tokenRender (RENDER) $ 1.98
  • morphoMorpho (MORPHO) $ 1.78
  • algorandAlgorand (ALGO) $ 0.108823
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.23
  • jito-staked-solJito Staked SOL (JITOSOL) $ 124.46
  • worldcoin-wldWorldcoin (WLD) $ 0.282012
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.084787
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,404.69
  • cosmosCosmos Hub (ATOM) $ 1.79
  • kaspaKaspa (KAS) $ 0.032921
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,262.26
  • nexoNEXO (NEXO) $ 0.896163
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,631.35
  • usdtbUSDtb (USDTB) $ 1.00
  • ethenaEthena (ENA) $ 0.094319
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999945
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 11.05
  • blockchain-capitalBlockchain Capital (BCAP) $ 83.06
  • wbnbWrapped BNB (WBNB) $ 759.61
  • arbitrumArbitrum (ARB) $ 0.121190
  • ignition-fbtcFunction FBTC (FBTC) $ 76,389.00
  • filecoinFilecoin (FIL) $ 0.901595
  • aptosAptos (APT) $ 0.857096
  • midnight-3Midnight (NIGHT) $ 0.040982
  • ousgOUSG (OUSG) $ 114.87
  • official-trumpOfficial Trump (TRUMP) $ 2.83
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.11
  • flare-networksFlare (FLR) $ 0.007655
  • hash-2Provenance Blockchain (HASH) $ 0.011217
  • beldexBeldex (BDX) $ 0.080243
  • binance-staked-solBinance Staked SOL (BNSOL) $ 108.24
  • justJUST (JST) $ 0.070208
  • yldsYLDS (YLDS) $ 0.999935
  • xdce-crowd-saleXDC Network (XDC) $ 0.030605
  • vechainVeChain (VET) $ 0.007009
  • ghoGHO (GHO) $ 0.999768
  • jupiter-exchange-solanaJupiter (JUP) $ 0.163826
  • new-x-ceo-is-backNEW X CEO IS BACK (XFLOKI) $ 0.506041
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999720
  • stable-2​​Stable (STABLE) $ 0.026287
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 76,461.00
  • usual-usdUsual USD (USD0) $ 0.999456
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 76,491.00
  • dashDash (DASH) $ 44.06
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.237081
  • siren-2Siren (SIREN) $ 0.719090
  • clbtcclBTC (CLBTC) $ 76,920.00
  • bonkBonk (BONK) $ 0.000006
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.51
  • true-usdTrueUSD (TUSD) $ 0.999295
  • a7a5A7A5 (A7A5) $ 0.012554
  • layerzeroLayerZero (ZRO) $ 1.94
  • ravedaoRaveDAO (RAVE) $ 1.92
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 2,419.84
  • adi-tokenADI (ADI) $ 4.36
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.674349
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 33.97
  • tbtctBTC (TBTC) $ 70,942.00
  • dexeDeXe (DEXE) $ 9.33
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.006704
  • wrappedm-by-m0WrappedM by M0 (WM) $ 1.00
  • euro-coinEURC (EURC) $ 1.17
  • chilizChiliz (CHZ) $ 0.039548
  • blockstackStacks (STX) $ 0.220078
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.03
  • decredDecred (DCR) $ 23.00
  • first-digital-usdFirst Digital USD (FDUSD) $ 1.00
  • c8ntinuumc8ntinuum (CTM) $ 0.087592
  • tezosTezos (XTZ) $ 0.356597
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,455.82
  • monadMonad (MON) $ 0.035543
  • sei-networkSei (SEI) $ 0.055922
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999983
  • venice-tokenVenice Token (VVV) $ 8.04
  • resolv-wstusrResolv wstUSR (WSTUSR) $ 1.13
  • usxUSX (USX) $ 0.999504
  • cocaCOCA (COCA) $ 1.30
  • hastra-primePRIME (PRIME) $ 1.04
  • aerodrome-financeAerodrome Finance (AERO) $ 0.380385
  • edgexedgeX (EDGE) $ 0.989955
  • doge-strategyDoge Strategy (DOGESTR) $ 0.288297
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 2,406.26
  • sun-tokenSun Token (SUN) $ 0.018114
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 76,200.00
  • ether-fiEther.fi (ETHFI) $ 0.440826
  • kinesis-goldKinesis Gold (KAU) $ 139.26
  • apenftAINFT (NFT) $ 0.00000033
  • curve-dao-tokenCurve DAO (CRV) $ 0.218595
  • wrapped-flareWrapped Flare (WFLR) $ 0.009961
  • bittorrentBitTorrent (BTT) $ 0.00000033
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,266.86
  • gnosisGnosis (GNO) $ 121.47
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.12
  • bitcoin-svBitcoin SV (BSV) $ 15.92
  • plasmaPlasma (XPL) $ 0.129167
  • spx6900SPX6900 (SPX) $ 0.326850
  • injective-protocolInjective (INJ) $ 3.01
  • lighterLighter (LIT) $ 1.18
  • binance-peg-xrpBinance-Peg XRP (XRP) $ 1.59
  • kinesis-silverKinesis Silver (KAG) $ 75.31
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 2,443.47
  • flokiFLOKI (FLOKI) $ 0.000029
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,421.84
  • conflux-tokenConflux (CFX) $ 0.054455
  • lido-daoLido DAO (LDO) $ 0.332355
  • noonNoon (NOON) $ 0.751949
  • sbtc-2sBTC (SBTC) $ 77,039.00
  • kaiaKaia (KAIA) $ 0.047789
  • celestiaCelestia (TIA) $ 0.307840
  • ape-and-pepeApe and Pepe (APEPE) $ 0.000001
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 115.56
  • usdaiUSDai (USDAI) $ 0.999886
  • savings-usddSavings USDD (SUSDD) $ 1.03
  • doublezeroDoubleZero (2Z) $ 0.079245
  • fraxLegacy Frax Dollar (FRAX) $ 0.993918
  • pyth-networkPyth Network (PYTH) $ 0.046948
  • msolMarinade Staked SOL (MSOL) $ 133.18
  • syrupMaple Finance (SYRUP) $ 0.230438
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,265.06
  • official-foOfficial FO (FO) $ 0.265956

New Malware Is Draining Crypto Wallets Through Google Chrome

0 182

New Malware Is Draining Crypto Wallets Through Google Chrome

New malware is attacking cryptocurrency users, stealing wallet credentials and financial data by bypassing Chrome’s encryption and monitoring clipboard activity to intercept and redirect transactions.

New Malware Targets Crypto Users, Stealing Wallet Credentials and Financial Data

A newly discovered remote access trojan (RAT) known as StilachiRAT is specifically targeting cryptocurrency users by stealing digital wallet credentials and exfiltrating sensitive data. Microsoft Incident Response researchers detailed the malware’s capabilities in a report published on March 17, 2025, highlighting its focus on compromising Google Chrome users who store cryptocurrency wallet extensions and saved login credentials.

According to Microsoft:

StilachiRAT targets a list of specific cryptocurrency wallet extensions for the Google Chrome browser.

The malware scans for 20 different wallet extensions, including Bitget Wallet (formerly Bitkeep), Trust Wallet, Tronlink, Metamask (ethereum), Tokenpocket, BNB Chain Wallet, OKX Wallet, Sui Wallet, Braavos – Starknet Wallet, Coinbase Wallet, Leap Cosmos Wallet, Manta Wallet, Keplr, Phantom, Compass Wallet for Sei, Math Wallet, Fractal Wallet, Station Wallet, Confluxportal, and Plug, allowing attackers to extract digital asset information.

Beyond targeting cryptocurrency wallets, StilachiRAT also steals stored login credentials from Google Chrome by bypassing its encryption mechanisms. The report explains: “StilachiRAT extracts Google Chrome’s encryption_key from the local state file in a user’s directory. However, since the key is encrypted when Chrome is first installed, it uses Windows APIs that rely on current user’s context to decrypt the master key. This allows access to the stored credentials in the password vault.”

This enables attackers to retrieve usernames and passwords associated with financial accounts, further increasing the risk to victims’ digital assets. Additionally, StilachiRAT establishes a command-and-control (C2) connection, allowing remote operators to execute commands, manipulate system processes, and remain persistent even after initial detection.

The malware also continuously monitors clipboard data to extract cryptocurrency keys and sensitive financial information. Microsoft’s report notes:

Clipboard monitoring is continuous, with targeted searches for sensitive information such as passwords, cryptocurrency keys, and potentially personal identifiers.

By scanning for specific patterns linked to cryptocurrency addresses, StilachiRAT can intercept and replace copied wallet addresses, redirecting transactions to an attacker-controlled destination. To mitigate the risk, Microsoft advises users to implement security measures such as enabling Microsoft Defender protections, using secure browsers, and avoiding unverified downloads. As the threat landscape evolves, cybersecurity experts urge crypto holders to stay vigilant against emerging malware designed to exploit digital assets.

Source

Leave A Reply

Your email address will not be published.