Hackers are Stealing Crypto Using Clipper Malware

Hackers are Stealing Crypto Using Clipper Malware
фото показано с : bitcoinist.com

2019-12-4 12:16

Hackers can steal crypto payments by using a relatively new malware that replaces the receiving address between copying and pasting.

Don’t CTRL+C CTRL +V

According to a report from February of this year, a security researcher called Lukas Stefanko discovered that hackers had brought the so-called Clipper Malware to Google Play via infected cryptocurrency apps. He describes it in a blog post he named ‘First Clipper Malware discovered on Google Play,’ where he explains how the malware can steal crypto users’ coins.

The malware has a very simple and very dangerous purpose, which is to take advantage of copying and pasting public addresses of cryptocurrency wallets. When a user copies an address, the malware replaces it with an address of a hacker.

When the user uses the paste function to enter the address, it is not the same one that they had originally copied. However, this is usually not something that most people would notice, as crypto wallet addresses tend to be extremely long and random-looking.

The issue also appeared on the BitcoinTalk forum, where the user warned others about copying and pasting addresses via CTRL+C and CTRL+V commands. The user stated that checking the initial few characters is not enough to confirm that the address that was pasted is the same one that was copied. Often enough, the first several characters might be genuine, and the user might not notice that the rest are not.

Stefanko himself called the malware very dangerous, stating that,

This dangerous form of malware first made its rounds in 2017 on the Windows platform and was spotted in shady Android app stores in the summer of 2018. In February 2019, we discovered a malicious clipper on Google Play, the official Android app store.

Hackers love Crypto

As far as malware goes, this one is not particularly old. However, its capabilities make it quite dangerous, and the fact that it is found even on some prominent software hosting sites only confirms that researchers are right to be concerned.

The malware discovered on Google Play Store impersonated MetaMask, and it would try to steal users’ Ethereum coins if they were to download the app. Ethereum coins are often targeted by hackers, whether from users’ private wallets or from crypto exchanges such as Upbit.

Of course, Bitcoin is still one of the most targeted coins, if not THE most targeted crypto. Even the largest crypto exchanges, such as Binance, often fail to fend off a hacking attack, which indicates how innovative attackers have become.

How to make sure you are not infected

As for how to deal with the clipping malware, security researchers have suggested paying extra attention to the address that users enter into the payment form. All kinds of errors can occur because crypto addresses were not meant for humans to read them and remember them, which is why checking each character is extremely important.

Any difference between the address that users wish to send the crypto to and the one in the form will result in lost funds as soon as the user presses the send button. Further, some have suggested that switching to Linux might be a better option, particularly Mint, for those who are new to Linux OS.

One reason for this is the fact that Microsoft OS features Cortana, which is an unremovable keyboard logger that stores user information in the Microsoft cloud. Other than that, users should try to regularly update their software, and only download apps posted by trusted sources.

Do you regularly check addresses to which you send funds? Let us know your thoughts down in the comments.

Image via Shutterstock

The post Hackers are Stealing Crypto Using Clipper Malware appeared first on Bitcoinist.com.

Similar to Notcoin - Blum - Airdrops In 2024

origin »

Emerald Crypto (EMD) на Currencies.ru

$ 0 (+0.00%)
Объем 24H $0
Изменеия 24h: 0.00 %, 7d: 4.67 %
Cегодня L: $0 - H: $0
Капитализация $0 Rank 99999
Цена в час новости $ 0.0413084 (-100%)

hackers malware ctrl clipper using crypto apps

hackers malware → Результатов: 114


Фото:

State-sponsored Chinese hackers have been targeting Southeast Asia since 2013

Researchers have revealed a previously undocumented threat actor of Chinese origin that has run at least six different cyber espionage campaigns in the Southeast Asian region since 2013. The research — disclosed by Palo Alto Networks’ threat intelligence team Unit 42 — linked the attacks to a group (or groups) it called PKPLUG, named after its tactic of delivering PlugX malware inside ZIP files, which are identified with the signature “PK.

2019-10-4 15:23


Фото:

Cryptojacking malware found in 11 RubyGem language repositories

Malware designed to surreptitiously infect victims’ computer systems and mine cryptocurrency on behalf of hackers has been found in 11 code libraries on programming language manager RubyGems. Hackers exploited RubyGems – a package manager for the Ruby programming language that devs use to upload and distribute new versions of software – by downloading Ruby libraries, adding the malicious code, and re-uploading them under new names Decrypt reports.

2019-8-22 10:20


Фото:

New York City College Struck by Ransomware, $1.9 Million in Bitcoin Demanded

Munroe College in Manhattan has been hit by a ransomware attack that has shut down the college’s computer systems. The hackers are demanding 170 bitcoin (BTC), which is roughly $1. 9 million. The malware infection came to light on the morning of July 10, but the specifications of the infection are still largely unknown, as reportedRead MoreRead More.

2019-7-15 13:00


Фото:

Hackers hid malware in a fake trading app to steal your cryptocurrency

Security researchers have uncovered a knock-off cryptocurrency trading website designed to steal the funds of unwitting victims. Cybercriminals have created a website that imitates the Cryptohopper cryptocurrency trading platform to distribute malware that could steal personal information, hijack your clipboard, and crypto-jack your system, Bleeping Computer reports.

2019-6-6 16:16


IBM Data Says Cybercriminals Are Replacing Ransomware and Malware Attacks For Cryptojacking

Hackers are always trying to find the most profitable ways to steal money from people online. Because of this, their attacks evolve together with the technology. If hackers used to send emails with simple viruses attached to them before, now they are using a lot more methods, including using other people’s computers to mine crypto. […]

2019-2-28 05:19


New Mac Malware Can Steal Crypto from Exchanges, Can it be Prevented?

Unit 42, the global threat intelligence team at Palo Alto Network, discovered Mac malware that can steal cookies linked to crypto exchanges and wallets. Although usernames and passwords may not be sufficient to initiate withdrawals at crypto exchanges, if hackers manage to steal a combination of login credentials, web cookies, authentication cookies, and SMS data, it could steal user funds.

2019-2-2 21:32


Фото:

Watch out for this new cryptocurrency ransomware stalking the web

Researchers have discovered “Anatova”, a brand new family of cryptocurrency-fuelled ransomware, and they warn it has the potential to become outright dangerous. Cybersecurity firm McAfee explained Anatova hides in seemingly innocuous icon files – usually the same popular games or applications – in order to fool the user into downloading the malware.

2019-1-23 19:58


How Bitcoin Investors Can Ensure Extra Security and Privacy When Trading Crypto Assets Using VPNs

Online security is one of the largest problems that internet users are facing today, and this has been an issue for years now. While an average user has the potential to get exposed to online threats such as malware or hackers, the situation may be even worse for cryptocurrency traders. Ever since cryptocurrencies exploded in […]

2019-1-19 20:22