• bitcoinBitcoin (BTC) $ 57,047.00
  • ethereumEthereum (ETH) $ 2,346.59
  • tetherTether (USDT) $ 0.999652
  • bnbBNB (BNB) $ 520.37
  • solanaSolana (SOL) $ 134.62
  • usd-coinUSDC (USDC) $ 0.999729
  • xrpXRP (XRP) $ 0.538690
  • staked-etherLido Staked Ether (STETH) $ 2,346.22
  • dogecoinDogecoin (DOGE) $ 0.104072
  • the-open-networkToncoin (TON) $ 5.25
  • tronTRON (TRX) $ 0.152827
  • cardanoCardano (ADA) $ 0.342234
  • avalanche-2Avalanche (AVAX) $ 23.80
  • wrapped-stethWrapped stETH (WSTETH) $ 2,763.29
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 57,006.00
  • shiba-inuShiba Inu (SHIB) $ 0.000013
  • wethWETH (WETH) $ 2,346.44
  • bitcoin-cashBitcoin Cash (BCH) $ 323.41
  • chainlinkChainlink (LINK) $ 10.46
  • polkadotPolkadot (DOT) $ 4.22
  • leo-tokenLEO Token (LEO) $ 5.51
  • daiDai (DAI) $ 0.999620
  • uniswapUniswap (UNI) $ 6.55
  • litecoinLitecoin (LTC) $ 60.79
  • nearNEAR Protocol (NEAR) $ 4.04
  • kaspaKaspa (KAS) $ 0.164564
  • wrapped-eethWrapped eETH (WEETH) $ 2,457.19
  • internet-computerInternet Computer (ICP) $ 7.89
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 1.29
  • pepePepe (PEPE) $ 0.000007
  • moneroMonero (XMR) $ 169.87
  • aptosAptos (APT) $ 6.17
  • stellarStellar (XLM) $ 0.093379
  • ethereum-classicEthereum Classic (ETC) $ 18.25
  • ethena-usdeEthena USDe (USDE) $ 0.998803
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.997619
  • suiSui (SUI) $ 0.924281
  • blockstackStacks (STX) $ 1.56
  • okbOKB (OKB) $ 37.95
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.380976
  • crypto-com-chainCronos (CRO) $ 0.078977
  • filecoinFilecoin (FIL) $ 3.58
  • aaveAave (AAVE) $ 137.99
  • bittensorBittensor (TAO) $ 276.54
  • render-tokenRender (RENDER) $ 5.18
  • immutable-xImmutable (IMX) $ 1.25
  • hedera-hashgraphHedera (HBAR) $ 0.050451
  • optimismOptimism (OP) $ 1.56
  • mantleMantle (MNT) $ 0.562244
  • arbitrumArbitrum (ARB) $ 0.521431
  • vechainVeChain (VET) $ 0.021740
  • injective-protocolInjective (INJ) $ 17.87
  • matic-networkPolygon (MATIC) $ 0.381135
  • dogwifcoindogwifhat (WIF) $ 1.68
  • cosmosCosmos Hub (ATOM) $ 4.11
  • whitebitWhiteBIT Coin (WBT) $ 10.87
  • makerMaker (MKR) $ 1,579.42
  • binance-peg-wethBinance-Peg WETH (WETH) $ 2,350.05
  • fantomFantom (FTM) $ 0.488522
  • the-graphThe Graph (GRT) $ 0.141538
  • heliumHelium (HNT) $ 7.96
  • arweaveArweave (AR) $ 20.07
  • bitget-tokenBitget Token (BGB) $ 0.938275
  • thorchainTHORChain (RUNE) $ 3.90
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,631.28
  • flokiFLOKI (FLOKI) $ 0.000128
  • bonkBonk (BONK) $ 0.000017
  • theta-tokenTheta Network (THETA) $ 1.20
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,452.98
  • solv-btcSolv Protocol SolvBTC (SOLVBTC) $ 56,967.00
  • quant-networkQuant (QNT) $ 73.55
  • algorandAlgorand (ALGO) $ 0.126981
  • gatechain-tokenGate (GT) $ 7.71
  • pyth-networkPyth Network (PYTH) $ 0.276232
  • jupiter-exchange-solanaJupiter (JUP) $ 0.733654
  • jasmycoinJasmyCoin (JASMY) $ 0.020011
  • sei-networkSei (SEI) $ 0.292034
  • bitcoin-svBitcoin SV (BSV) $ 48.77
  • kucoin-sharesKuCoin (KCS) $ 8.12
  • ondo-financeOndo (ONDO) $ 0.624786
  • lido-daoLido DAO (LDO) $ 0.999933
  • celestiaCelestia (TIA) $ 4.18
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,392.92
  • bittorrentBitTorrent (BTT) $ 0.00000090
  • paypal-usdPayPal USD (PYUSD) $ 0.998157
  • ronin-bridged-weth-roninRonin Bridged WETH (Ronin) (WETH) $ 2,344.91
  • coredaoorgCore (CORE) $ 0.930328
  • mantra-daoMANTRA (OM) $ 0.999241
  • notcoinNotcoin (NOT) $ 0.008175
  • flowFlow (FLOW) $ 0.535634
  • fasttokenFasttoken (FTN) $ 2.51
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 2,344.03
  • klay-tokenKlaytn (KLAY) $ 0.133496
  • based-brettBrett (BRETT) $ 0.077383
  • eosEOS (EOS) $ 0.488502
  • usddUSDD (USDD) $ 0.993686
  • starknetStarknet (STRK) $ 0.407367
  • elrond-erd-2MultiversX (EGLD) $ 26.43
  • galaGALA (GALA) $ 0.018492
  • flare-networksFlare (FLR) $ 0.014761
  • tokenize-xchangeTokenize Xchange (TKX) $ 8.58
  • axie-infinityAxie Infinity (AXS) $ 4.51
  • beam-2Beam (BEAM) $ 0.013060
  • msolMarinade Staked SOL (MSOL) $ 163.70
  • neoNEO (NEO) $ 9.37
  • sats-ordinalsSATS (Ordinals) (SATS) $ 0.00000031
  • fraxFrax (FRAX) $ 0.996611
  • tezosTezos (XTZ) $ 0.638988
  • ecasheCash (XEC) $ 0.000032
  • conflux-tokenConflux (CFX) $ 0.140100
  • worldcoin-wldWorldcoin (WLD) $ 1.45
  • ordinalsORDI (ORDI) $ 29.40
  • tether-goldTether Gold (XAUT) $ 2,503.78
  • akash-networkAkash Network (AKT) $ 2.45
  • popcatPopcat (POPCAT) $ 0.611076
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 56,957.00
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,399.26
  • the-sandboxThe Sandbox (SAND) $ 0.252937
  • apecoinApeCoin (APE) $ 0.855997
  • dydx-chaindYdX (DYDX) $ 0.905640
  • dogs-2Dogs (DOGS) $ 0.001077
  • ethereum-name-serviceEthereum Name Service (ENS) $ 16.72
  • nexoNEXO (NEXO) $ 0.985967
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 2,348.81
  • wormholeWormhole (W) $ 0.207100
  • roninRonin (RON) $ 1.51
  • decentralandDecentraland (MANA) $ 0.265236
  • true-usdTrueUSD (TUSD) $ 0.998199
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 2,533.61
  • pendlePendle (PENDLE) $ 3.07
  • mina-protocolMina Protocol (MINA) $ 0.418586
  • chilizChiliz (CHZ) $ 0.053043
  • pax-goldPAX Gold (PAXG) $ 2,509.01
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000083
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.71
  • book-of-memeBOOK OF MEME (BOME) $ 0.006581
  • zcashZcash (ZEC) $ 29.93
  • havvenSynthetix Network (SNX) $ 1.37
  • dexeDeXe (DEXE) $ 7.77
  • apenftAPENFT (NFT) $ 0.00000045
  • l2-standard-bridged-weth-blastL2 Standard Bridged WETH (Blast) (WETH) $ 2,345.03
  • ethenaEthena (ENA) $ 0.230500
  • iotaIOTA (IOTA) $ 0.127649
  • frax-etherFrax Ether (FRXETH) $ 2,338.27
  • aioz-networkAIOZ Network (AIOZ) $ 0.383804
  • livepeerLivepeer (LPT) $ 11.87
  • usdbUSDB (USDB) $ 0.991813
  • zksyncZKsync (ZK) $ 0.109569
  • raydiumRaydium (RAY) $ 1.51
  • bridged-usdc-polygon-pos-bridgeBridged USDC (Polygon PoS Bridge) (USDC.E) $ 1.00
  • nervos-networkNervos Network (CKB) $ 0.008796
  • layerzeroLayerZero (ZRO) $ 3.52
  • cat-in-a-dogs-worldcat in a dogs world (MEW) $ 0.004416
  • xdce-crowd-saleXDC Network (XDC) $ 0.026339
  • axelarAxelar (AXL) $ 0.506010
  • astarAstar (ASTR) $ 0.054790
  • gnosisGnosis (GNO) $ 150.67
  • wemix-tokenWEMIX (WEMIX) $ 0.936978
  • bitcoin-goldBitcoin Gold (BTG) $ 21.74
  • theta-fuelTheta Fuel (TFUEL) $ 0.056053
  • safepalSafePal (SFP) $ 0.766640
  • compound-governance-tokenCompound (COMP) $ 42.57
  • mx-tokenMX (MX) $ 3.78
  • oasis-networkOasis Network (ROSE) $ 0.054830
  • binance-peg-busdBinance-Peg BUSD (BUSD) $ 1.00
  • beldexBeldex (BDX) $ 0.053702
  • polygon-pos-bridged-weth-polygon-posPolygon PoS Bridged WETH (Polygon POS) (WETH) $ 2,348.52
  • trust-wallet-tokenTrust Wallet (TWT) $ 0.849266
  • blurBlur (BLUR) $ 0.182215
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.06
  • aerodrome-financeAerodrome Finance (AERO) $ 0.556150
  • superfarmSuperVerse (SUPER) $ 0.739994
  • staked-frax-etherStaked Frax Ether (SFRXETH) $ 2,571.66
  • curve-dao-tokenCurve DAO (CRV) $ 0.277587
  • swethSwell Ethereum (SWETH) $ 2,504.36
  • safeSafe (SAFE) $ 0.692736
  • stepnGMT (GMT) $ 0.133441
  • kavaKava (KAVA) $ 0.303258
  • mog-coinMog Coin (MOG) $ 0.00000091
  • 1inch1inch (1INCH) $ 0.260160
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 2,348.24
  • iotexIoTeX (IOTX) $ 0.034150
  • echelon-primeEchelon Prime (PRIME) $ 6.93
  • sundogSundog (SUNDOG) $ 0.318384
  • constitutiondaoConstitutionDAO (PEOPLE) $ 0.062164
  • kusamaKusama (KSM) $ 20.06
  • bitcoin-avalanche-bridged-btc-bBitcoin Avalanche Bridged (BTC.b) (BTC.B) $ 57,171.00
  • amp-tokenAmp (AMP) $ 0.003748
  • aevo-exchangeAevo (AEVO) $ 0.334268
  • singularitynetSingularityNET (AGIX) $ 0.561755
  • reserve-rights-tokenReserve Rights (RSR) $ 0.005648
  • dashDash (DASH) $ 24.05
  • holotokenHolo (HOT) $ 0.001601
  • stader-ethxStader ETHx (ETHX) $ 2,441.57
  • justJUST (JST) $ 0.028406
  • dymensionDymension (DYM) $ 1.38
  • woo-networkWOO (WOO) $ 0.151318
  • arkhamArkham (ARKM) $ 1.04
  • osmosisOsmosis (OSMO) $ 0.397198
  • dog-go-to-the-moon-runeDOG•GO•TO•THE•MOON (Runes) (DOG) $ 0.002700

Crypto firms beware: Lazarus’ new malware can now bypass detection

0 160

Crypto firms beware: Lazarus’ new malware can now bypass detection

  cointelegraph.com 14 m

Crypto firms beware: Lazarus’ new malware can now bypass detection

North Korean hacking collective Lazarus Group has been using a new type of “sophisticated” malware as part of its fake employment scams — which researchers warn is far more challenging to detect than its predecessor.

According to a Sept. 29 post from ESET’s senior malware researcher Peter Kálnai, while analyzing a recent fake job attack against a Spain-based aerospace firm, ESET researchers discovered a publicly undocumented backdoor named LightlessCan.

#ESET researchers unveiled their findings about an attack by the North Korea-linked #APT group #Lazarus that took aim at an aerospace company in Spain.

▶️ Find out more in a #WeekinSecurity video with @TonyAtESET. pic.twitter.com/M94J200VQx

— ESET (@ESET) September 29, 2023

The Lazarus Group’s fake job scam typically involves tricking victims with a potential offer of employment at a well-known firm. The attackers would entice victims to download a malicious payload masqueraded as documents to do all sorts of damage.

However, Kálnai says the new LightlessCan payload is a “significant advancement” compared to its predecessor BlindingCan.

“LightlessCan mimics the functionalities of a wide range of native Windows commands, enabling discreet execution within the RAT itself instead of noisy console executions.”

“This approach offers a significant advantage in terms of stealthiness, both in evading real-time monitoring solutions like EDRs, and postmortem digital forensic tools,” he said.

️‍♂️ Beware of fake LinkedIn recruiters! Find out how Lazarus group exploited a Spanish aerospace company via trojanized coding challenge. Dive into the details of their cyberespionage campaign in our latest #WeLiveSecurity article. #ESET #ProgressProtected

— ESET (@ESET) September 29, 2023

The new payload also uses what the researcher calls “execution guardrails” — ensuring that the payload can only be decrypted on the intended victim’s machine, thereby avoiding unintended decryption by security researchers.

Kálnai said that one case that involved the new malware came from an attack on a Spanish aerospace firm when an employee received a message from a fake Meta recruiter named Steve Dawson in 2022.

Soon after, the hackers sent over the two simple coding challenges embedded with the malware.

Crypto firms beware: Lazarus’ new malware can now bypass detection

The initial contact by the attacker impersonating a recruiter from Meta. Source: WeLiveSecurity.

Cyberespionage was the main motivation behind Lazarus Group’s attack on the Spain-based aerospace firm, he added.

Since 2016, North Korean hackers have stolen an estimated $3.5 billion from cryptocurrency projects, according to a Sept. 14 report by blockchain forensics firm Chainalysis.

In September 2022, cybersecurity firm SentinelOne warned of a fake job scam on LinkedIn, offering potential victims a job at Crypto.com as part of a campaign dubbed “Operation Dream Job.»

Meanwhile, the United Nations has beetrying to curtail North Korea’s cybercrime tactics at the international level — as it is understood North Korea is using the stolen funds to support its nuclear missile program.

Source

Leave A Reply

Your email address will not be published.