Hackers are Stealing Crypto Using Clipper Malware

Hackers are Stealing Crypto Using Clipper Malware
фото показано с : bitcoinist.com

2019-12-4 12:16

Hackers can steal crypto payments by using a relatively new malware that replaces the receiving address between copying and pasting.

Don’t CTRL+C CTRL +V

According to a report from February of this year, a security researcher called Lukas Stefanko discovered that hackers had brought the so-called Clipper Malware to Google Play via infected cryptocurrency apps. He describes it in a blog post he named ‘First Clipper Malware discovered on Google Play,’ where he explains how the malware can steal crypto users’ coins.

The malware has a very simple and very dangerous purpose, which is to take advantage of copying and pasting public addresses of cryptocurrency wallets. When a user copies an address, the malware replaces it with an address of a hacker.

When the user uses the paste function to enter the address, it is not the same one that they had originally copied. However, this is usually not something that most people would notice, as crypto wallet addresses tend to be extremely long and random-looking.

The issue also appeared on the BitcoinTalk forum, where the user warned others about copying and pasting addresses via CTRL+C and CTRL+V commands. The user stated that checking the initial few characters is not enough to confirm that the address that was pasted is the same one that was copied. Often enough, the first several characters might be genuine, and the user might not notice that the rest are not.

Stefanko himself called the malware very dangerous, stating that,

This dangerous form of malware first made its rounds in 2017 on the Windows platform and was spotted in shady Android app stores in the summer of 2018. In February 2019, we discovered a malicious clipper on Google Play, the official Android app store.

Hackers love Crypto

As far as malware goes, this one is not particularly old. However, its capabilities make it quite dangerous, and the fact that it is found even on some prominent software hosting sites only confirms that researchers are right to be concerned.

The malware discovered on Google Play Store impersonated MetaMask, and it would try to steal users’ Ethereum coins if they were to download the app. Ethereum coins are often targeted by hackers, whether from users’ private wallets or from crypto exchanges such as Upbit.

Of course, Bitcoin is still one of the most targeted coins, if not THE most targeted crypto. Even the largest crypto exchanges, such as Binance, often fail to fend off a hacking attack, which indicates how innovative attackers have become.

How to make sure you are not infected

As for how to deal with the clipping malware, security researchers have suggested paying extra attention to the address that users enter into the payment form. All kinds of errors can occur because crypto addresses were not meant for humans to read them and remember them, which is why checking each character is extremely important.

Any difference between the address that users wish to send the crypto to and the one in the form will result in lost funds as soon as the user presses the send button. Further, some have suggested that switching to Linux might be a better option, particularly Mint, for those who are new to Linux OS.

One reason for this is the fact that Microsoft OS features Cortana, which is an unremovable keyboard logger that stores user information in the Microsoft cloud. Other than that, users should try to regularly update their software, and only download apps posted by trusted sources.

Do you regularly check addresses to which you send funds? Let us know your thoughts down in the comments.

Image via Shutterstock

The post Hackers are Stealing Crypto Using Clipper Malware appeared first on Bitcoinist.com.

origin »

Bitcoin price in Telegram @btc_price_every_hour

Emerald Crypto (EMD) на Currencies.ru

$ 0 (+0.00%)
Объем 24H $0
Изменеия 24h: 0.00 %, 7d: 4.67 %
Cегодня L: $0 - H: $0
Капитализация $0 Rank 99999
Цена в час новости $ 0.0413084 (-100%)

hackers malware ctrl clipper using crypto apps

hackers malware → Результатов: 114


Фото:

New York City College Struck by Ransomware, $1.9 Million in Bitcoin Demanded

Munroe College in Manhattan has been hit by a ransomware attack that has shut down the college’s computer systems. The hackers are demanding 170 bitcoin (BTC), which is roughly $1. 9 million. The malware infection came to light on the morning of July 10, but the specifications of the infection are still largely unknown, as reportedRead MoreRead More.

2019-7-15 13:00


Фото:

Hackers hid malware in a fake trading app to steal your cryptocurrency

Security researchers have uncovered a knock-off cryptocurrency trading website designed to steal the funds of unwitting victims. Cybercriminals have created a website that imitates the Cryptohopper cryptocurrency trading platform to distribute malware that could steal personal information, hijack your clipboard, and crypto-jack your system, Bleeping Computer reports.

2019-6-6 16:16


IBM Data Says Cybercriminals Are Replacing Ransomware and Malware Attacks For Cryptojacking

Hackers are always trying to find the most profitable ways to steal money from people online. Because of this, their attacks evolve together with the technology. If hackers used to send emails with simple viruses attached to them before, now they are using a lot more methods, including using other people’s computers to mine crypto. […]

2019-2-28 05:19


New Mac Malware Can Steal Crypto from Exchanges, Can it be Prevented?

Unit 42, the global threat intelligence team at Palo Alto Network, discovered Mac malware that can steal cookies linked to crypto exchanges and wallets. Although usernames and passwords may not be sufficient to initiate withdrawals at crypto exchanges, if hackers manage to steal a combination of login credentials, web cookies, authentication cookies, and SMS data, it could steal user funds.

2019-2-2 21:32


Фото:

Watch out for this new cryptocurrency ransomware stalking the web

Researchers have discovered “Anatova”, a brand new family of cryptocurrency-fuelled ransomware, and they warn it has the potential to become outright dangerous. Cybersecurity firm McAfee explained Anatova hides in seemingly innocuous icon files – usually the same popular games or applications – in order to fool the user into downloading the malware.

2019-1-23 19:58


How Bitcoin Investors Can Ensure Extra Security and Privacy When Trading Crypto Assets Using VPNs

Online security is one of the largest problems that internet users are facing today, and this has been an issue for years now. While an average user has the potential to get exposed to online threats such as malware or hackers, the situation may be even worse for cryptocurrency traders. Ever since cryptocurrencies exploded in […]

2019-1-19 20:22


Фото:

Latest Cyber Threats Facing the Cryptocurrency Industry

Cryptocurrency hackers have recently devised sophisticated means to penetrate the industry. Reports reveal that malware now comes in the forms of trojans and disguised installers. Trojans and Installer Malware According to The Next Web, studies by the Reporting and Analysis Center for Information Assurance (MELANI) in Switzerland show that Trojans now focus on digital currency […] The post Latest Cyber Threats Facing the Cryptocurrency Industry appeared first on Ethereum World News.

2018-11-10 12:23


Five South Korean Hackers Get Arrested for Infecting Crypto Mining Malware into Over 6,000 Computers

The South Korean police have arrested five people for injecting malware in the computer of over 6,000 people. The local police have joined efforts with the Korean National Police Agency Cyber Bureau to arrest a group of five hackers led by Kim Amu-Gae, 24, which have released 32,435 emails containing a crypto mining malware. These […]

2018-11-9 01:56