• bitcoinBitcoin (BTC) $ 66,815.00
  • ethereumEthereum (ETH) $ 3,108.95
  • tetherTether (USDT) $ 1.00
  • bnbBNB (BNB) $ 577.47
  • solanaSolana (SOL) $ 172.05
  • usd-coinUSDC (USDC) $ 1.00
  • staked-etherLido Staked Ether (STETH) $ 3,105.78
  • xrpXRP (XRP) $ 0.521803
  • the-open-networkToncoin (TON) $ 6.43
  • dogecoinDogecoin (DOGE) $ 0.152111
  • cardanoCardano (ADA) $ 0.480318
  • shiba-inuShiba Inu (SHIB) $ 0.000025
  • avalanche-2Avalanche (AVAX) $ 37.26
  • tronTRON (TRX) $ 0.123336
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 66,862.00
  • polkadotPolkadot (DOT) $ 7.12
  • chainlinkChainlink (LINK) $ 16.40
  • bitcoin-cashBitcoin Cash (BCH) $ 476.96
  • nearNEAR Protocol (NEAR) $ 7.90
  • matic-networkPolygon (MATIC) $ 0.712851
  • litecoinLitecoin (LTC) $ 83.91
  • internet-computerInternet Computer (ICP) $ 13.45
  • uniswapUniswap (UNI) $ 7.91
  • fetch-aiFetch.ai (FET) $ 2.28
  • daiDai (DAI) $ 0.999935
  • leo-tokenLEO Token (LEO) $ 5.88
  • ethereum-classicEthereum Classic (ETC) $ 28.61
  • hedera-hashgraphHedera (HBAR) $ 0.113876
  • pepePepe (PEPE) $ 0.000009
  • render-tokenRender (RNDR) $ 9.92
  • aptosAptos (APT) $ 8.52
  • wrapped-eethWrapped eETH (WEETH) $ 3,230.17
  • immutable-xImmutable (IMX) $ 2.43
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.999828
  • cosmosCosmos Hub (ATOM) $ 8.61
  • crypto-com-chainCronos (CRO) $ 0.124157
  • filecoinFilecoin (FIL) $ 5.84
  • mantleMantle (MNT) $ 0.975673
  • stellarStellar (XLM) $ 0.108017
  • arweaveArweave (AR) $ 47.46
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,055.02
  • blockstackStacks (STX) $ 2.08
  • okbOKB (OKB) $ 50.07
  • the-graphThe Graph (GRT) $ 0.308882
  • kaspaKaspa (KAS) $ 0.121665
  • optimismOptimism (OP) $ 2.55
  • arbitrumArbitrum (ARB) $ 1.01
  • makerMaker (MKR) $ 2,803.77
  • vechainVeChain (VET) $ 0.035422
  • bittensorBittensor (TAO) $ 376.92
  • dogwifcoindogwifhat (WIF) $ 2.55
  • fantomFantom (FTM) $ 0.887718
  • suiSui (SUI) $ 1.07
  • moneroMonero (XMR) $ 136.14
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • injective-protocolInjective (INJ) $ 24.80
  • thorchainTHORChain (RUNE) $ 6.80
  • theta-tokenTheta Network (THETA) $ 2.20
  • flokiFLOKI (FLOKI) $ 0.000201
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,438.58
  • celestiaCelestia (TIA) $ 9.44
  • jupiter-exchange-solanaJupiter (JUP) $ 1.25
  • coredaoorgCore (CORE) $ 1.83
  • galaGALA (GALA) $ 0.045369
  • sei-networkSei (SEI) $ 0.548578
  • lido-daoLido DAO (LDO) $ 1.79
  • bonkBonk (BONK) $ 0.000024
  • bitget-tokenBitget Token (BGB) $ 1.09
  • algorandAlgorand (ALGO) $ 0.184642
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,207.50
  • quant-networkQuant (QNT) $ 98.01
  • whitebitWhiteBIT Coin (WBT) $ 9.86
  • ondo-financeOndo (ONDO) $ 0.948551
  • akash-networkAkash Network (AKT) $ 5.76
  • flowFlow (FLOW) $ 0.895547
  • aaveAave (AAVE) $ 88.49
  • bitcoin-svBitcoin SV (BSV) $ 65.90
  • singularitynetSingularityNET (AGIX) $ 0.952923
  • beam-2Beam (BEAM) $ 0.024556
  • bittorrentBitTorrent (BTT) $ 0.000001
  • dydx-chaindYdX (DYDX) $ 2.06
  • flare-networksFlare (FLR) $ 0.027636
  • ethenaEthena (ENA) $ 0.753400
  • neoNEO (NEO) $ 15.51
  • zebec-protocolZebec Protocol (ZBC) $ 0.021366
  • elrond-erd-2MultiversX (EGLD) $ 40.30
  • axie-infinityAxie Infinity (AXS) $ 7.44
  • cheeleeCheelee (CHEEL) $ 18.90
  • chilizChiliz (CHZ) $ 0.119571
  • msolMarinade Staked SOL (MSOL) $ 205.23
  • worldcoin-wldWorldcoin (WLD) $ 4.87
  • gatechain-tokenGate (GT) $ 7.93
  • tokenize-xchangeTokenize Xchange (TKX) $ 12.66
  • the-sandboxThe Sandbox (SAND) $ 0.443934
  • wormholeWormhole (W) $ 0.547031
  • ecasheCash (XEC) $ 0.000049
  • safeSafe (SAFE) $ 2.23
  • jasmycoinJasmyCoin (JASMY) $ 0.019724
  • kucoin-sharesKuCoin (KCS) $ 9.82
  • eosEOS (EOS) $ 0.811855
  • tezosTezos (XTZ) $ 0.941625
  • aioz-networkAIOZ Network (AIOZ) $ 0.837105
  • conflux-tokenConflux (CFX) $ 0.224041
  • roninRonin (RON) $ 2.76
  • mina-protocolMina Protocol (MINA) $ 0.798524
  • havvenSynthetix Network (SNX) $ 2.69
  • ordinalsORDI (ORDI) $ 40.32
  • starknetStarknet (STRK) $ 1.14
  • decentralandDecentraland (MANA) $ 0.432543
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,098.41
  • lido-staked-solLido Staked SOL (STSOL) $ 205.14
  • ribbon-financeRibbon Finance (RBN) $ 0.811765
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,133.20
  • book-of-memeBOOK OF MEME (BOME) $ 0.011387
  • apecoinApeCoin (APE) $ 1.24
  • gnosisGnosis (GNO) $ 300.15
  • pendlePendle (PENDLE) $ 4.94
  • heliumHelium (HNT) $ 4.61
  • dexeDeXe (DEXE) $ 13.01
  • nexoNEXO (NEXO) $ 1.31
  • usddUSDD (USDD) $ 1.00
  • kavaKava (KAVA) $ 0.673287
  • nervos-networkNervos Network (CKB) $ 0.016314
  • iotaIOTA (IOTA) $ 0.216258
  • echelon-primeEchelon Prime (PRIME) $ 17.79
  • theta-fuelTheta Fuel (TFUEL) $ 0.106740
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.66
  • axelarAxelar (AXL) $ 1.02
  • pyth-networkPyth Network (PYTH) $ 0.443212
  • bitcoin-goldBitcoin Gold (BTG) $ 37.43
  • klay-tokenKlaytn (KLAY) $ 0.179261
  • fraxFrax (FRAX) $ 0.998944
  • frax-etherFrax Ether (FRXETH) $ 3,097.55
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000108
  • oasis-networkOasis Network (ROSE) $ 0.092193
  • ocean-protocolOcean Protocol (OCEAN) $ 0.954794
  • fasttokenFasttoken (FTN) $ 1.97
  • livepeerLivepeer (LPT) $ 19.07
  • sats-ordinalsSATS (Ordinals) (SATS) $ 0.00000029
  • mantra-daoMANTRA (OM) $ 0.739666
  • blurBlur (BLUR) $ 0.371286
  • tether-goldTether Gold (XAUT) $ 2,415.55
  • swethSwell Ethereum (SWETH) $ 3,275.39
  • dydxdYdX (ETHDYDX) $ 2.05
  • osmosisOsmosis (OSMO) $ 0.864661
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,324.16
  • jito-governance-tokenJito (JTO) $ 4.63
  • woo-networkWOO (WOO) $ 0.299186
  • xdce-crowd-saleXDC Network (XDC) $ 0.036907
  • wemix-tokenWEMIX (WEMIX) $ 1.49
  • pepecoin-2PepeCoin (PEPECOIN) $ 4.69
  • illuviumIlluvium (ILV) $ 84.29
  • golemGolem (GLM) $ 0.535628
  • curve-dao-tokenCurve DAO (CRV) $ 0.427682
  • astarAstar (ASTR) $ 0.091312
  • arkhamArkham (ARKM) $ 2.35
  • true-usdTrueUSD (TUSD) $ 1.00
  • 0x0x Protocol (ZRX) $ 0.599285
  • raydiumRaydium (RAY) $ 1.85
  • staked-frax-etherStaked Frax Ether (SFRXETH) $ 3,363.34
  • aerodrome-financeAerodrome Finance (AERO) $ 1.06
  • apenftAPENFT (NFT) $ 0.00000049
  • superfarmSuperVerse (SUPER) $ 1.06
  • polymeshPolymesh (POLYX) $ 0.453184
  • iotexIoTeX (IOTX) $ 0.050270
  • radixRadix (XRD) $ 0.045343
  • 1inch1inch (1INCH) $ 0.400773
  • ethereum-name-serviceEthereum Name Service (ENS) $ 14.88
  • enjincoinEnjin Coin (ENJ) $ 0.317600
  • dymensionDymension (DYM) $ 2.70
  • celoCelo (CELO) $ 0.855797
  • venomVenom (VENOM) $ 0.278192
  • memecoin-2Memecoin (MEME) $ 0.025054
  • mx-tokenMX (MX) $ 4.62
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.09
  • ankrAnkr Network (ANKR) $ 0.044755
  • stepnGMT (GMT) $ 0.220586
  • nosanaNosana (NOS) $ 5.26
  • pax-goldPAX Gold (PAXG) $ 2,388.66
  • altlayerAltLayer (ALT) $ 0.320424
  • zilliqaZilliqa (ZIL) $ 0.023582
  • reserve-rights-tokenReserve Rights (RSR) $ 0.008533
  • siacoinSiacoin (SC) $ 0.007262
  • arcblockArcblock (ABT) $ 4.19
  • ravencoinRavencoin (RVN) $ 0.029634
  • biconomyBiconomy (BICO) $ 0.524639
  • project-galaxyGalxe (GAL) $ 3.48
  • holotokenHolo (HOT) $ 0.002251
  • terra-luna-2Terra (LUNA) $ 0.581021
  • paypal-usdPayPal USD (PYUSD) $ 0.999416
  • rocket-poolRocket Pool (RPL) $ 19.53
  • amp-tokenAmp (AMP) $ 0.007042
  • manta-networkManta Network (MANTA) $ 1.57
  • corgiaiCorgiAI (CORGIAI) $ 0.001133
  • stader-ethxStader ETHx (ETHX) $ 3,178.76
  • ether-fiEther.fi (ETHFI) $ 3.40
  • qtumQtum (QTUM) $ 3.69
  • compound-governance-tokenCompound (COMP) $ 56.28
  • skaleSKALE (SKL) $ 0.074790
  • zetachainZetaChain (ZETA) $ 1.63

Russian-language cybercrime operation mimics web3 games to target macOS, Windows

0 29

Russian-language cybercrime operation mimics web3 games to target macOS, Windows

  crypto.news 1 h

Russian-language cybercrime operation mimics web3 games to target macOS, Windows

A new malware is faking web3 gaming initiatives to distribute infostealers across macOS and Windows platforms.

A recent investigation by Insikt Group has unveiled a new Russian-language cybercrime operation targeting users with fake web3 gaming projects designed to distribute malware.

A Russian-language cybercriminal campaign is exploiting Web3 gaming to spread infostealers on macOS & Windows. This campaign mimics legit projects, targeting gamers for malware distribution. pic.twitter.com/BHk8x3ZeOK

— Recorded Future (@RecordedFuture) April 11, 2024

In a blog post on Apr. 11, Insikt Group’s cybersecurity analysts revealed that the malware aims to steal information from both macOS and Windows users, leveraging the allure of blockchain-based gaming for potential financial gains. The operation, dubbed “Web of Deceit: The Rise of Imitation Web3 Gaming Scams and Malware Infections,” is believed to be orchestrated by Russian-speaking hackers, as indicated by artifacts found in the HTML code.

Russian-language cybercrime operation mimics web3 games to target macOS, Windows

Webscript commonalities between the web3 projects | Source: Recorded Future

“While we cannot make a determination of their exact location, the presence of such artifacts suggests that the threat actors could be located in Russia or a nation within the Commonwealth of Independent States (CIS).”

Insikt Group

You might also like: Trend Micro reveals new malware targeting crypto wallets on Windows

The campaign is reportedly focused on the development of fake web3 gaming projects with minor changes in names and branding to appear legitimate. In a bid to lure victims, bad actors also create fake social media accounts to lend credibility to their fraudulent schemes.

Upon installation, the malware infects victims’ devices with various types of infostealer malware such as Atomic macOS Stealer (AMOS), Stealc, Rhadamanthys, or RisePro, tailored to the user’s operating system.

“The campaign targets Web3 gamers, exploiting their potential lack of cyber hygiene in the pursuit of profits. It represents a significant cross-platform threat, utilizing a variety of malware to compromise users’ systems.”

Insikt Group

The analysts noted that the cybercriminals have set up a strong system, allowing bad actors to “quickly adapt by rebranding or shifting focus upon detection.” The investigation also revealed that malware variants like AMOS can infect both Intel and Apple M1 Macs, trying to steal crypto from desktop wallets or extensions.

Once private data such as the operating system type, user-agent, IP address, and browser-connected crypto wallets are drained, they are sent to a pre-configured Telegram channel established by the threat actors, also in Russian. Although the extent of the scam remains unclear, Insikt Group asserts that the latest malware underscores a “strategic shift toward exploiting the intersection of emerging technologies and social engineering.”


Source

Leave A Reply

Your email address will not be published.