• bitcoinBitcoin (BTC) $ 67,756.00
  • ethereumEthereum (ETH) $ 3,248.78
  • tetherTether (USDT) $ 1.00
  • bnbBNB (BNB) $ 578.55
  • solanaSolana (SOL) $ 181.68
  • usd-coinUSDC (USDC) $ 1.00
  • xrpXRP (XRP) $ 0.595786
  • staked-etherLido Staked Ether (STETH) $ 3,247.68
  • dogecoinDogecoin (DOGE) $ 0.133451
  • the-open-networkToncoin (TON) $ 6.68
  • cardanoCardano (ADA) $ 0.414693
  • tronTRON (TRX) $ 0.137581
  • avalanche-2Avalanche (AVAX) $ 28.58
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 67,741.00
  • shiba-inuShiba Inu (SHIB) $ 0.000017
  • chainlinkChainlink (LINK) $ 13.51
  • polkadotPolkadot (DOT) $ 5.83
  • bitcoin-cashBitcoin Cash (BCH) $ 378.74
  • nearNEAR Protocol (NEAR) $ 5.67
  • uniswapUniswap (UNI) $ 7.62
  • leo-tokenLEO Token (LEO) $ 5.82
  • litecoinLitecoin (LTC) $ 71.23
  • daiDai (DAI) $ 1.00
  • pepePepe (PEPE) $ 0.000012
  • wrapped-eethWrapped eETH (WEETH) $ 3,394.33
  • matic-networkPolygon (MATIC) $ 0.511850
  • internet-computerInternet Computer (ICP) $ 10.06
  • kaspaKaspa (KAS) $ 0.181735
  • ethereum-classicEthereum Classic (ETC) $ 22.83
  • aptosAptos (APT) $ 7.01
  • ethena-usdeEthena USDe (USDE) $ 0.999262
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 1.26
  • stellarStellar (XLM) $ 0.102417
  • moneroMonero (XMR) $ 162.51
  • blockstackStacks (STX) $ 1.87
  • mantleMantle (MNT) $ 0.843436
  • filecoinFilecoin (FIL) $ 4.61
  • render-tokenRender (RENDER) $ 6.61
  • dogwifcoindogwifhat (WIF) $ 2.59
  • injective-protocolInjective (INJ) $ 25.57
  • bittensorBittensor (TAO) $ 347.31
  • okbOKB (OKB) $ 41.03
  • hedera-hashgraphHedera (HBAR) $ 0.068413
  • crypto-com-chainCronos (CRO) $ 0.091216
  • makerMaker (MKR) $ 2,625.61
  • immutable-xImmutable (IMX) $ 1.57
  • arbitrumArbitrum (ARB) $ 0.723472
  • cosmosCosmos Hub (ATOM) $ 6.15
  • vechainVeChain (VET) $ 0.028514
  • first-digital-usdFirst Digital USD (FDUSD) $ 1.00
  • arweaveArweave (AR) $ 30.27
  • bonkBonk (BONK) $ 0.000028
  • suiSui (SUI) $ 0.779204
  • optimismOptimism (OP) $ 1.72
  • the-graphThe Graph (GRT) $ 0.199209
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,637.52
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,296.39
  • flokiFLOKI (FLOKI) $ 0.000179
  • bitget-tokenBitget Token (BGB) $ 1.13
  • thorchainTHORChain (RUNE) $ 4.69
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,372.38
  • theta-tokenTheta Network (THETA) $ 1.50
  • whitebitWhiteBIT Coin (WBT) $ 10.10
  • aaveAave (AAVE) $ 97.38
  • notcoinNotcoin (NOT) $ 0.014167
  • jupiter-exchange-solanaJupiter (JUP) $ 1.06
  • ondo-financeOndo (ONDO) $ 0.988381
  • jasmycoinJasmyCoin (JASMY) $ 0.028916
  • pyth-networkPyth Network (PYTH) $ 0.386979
  • lido-daoLido DAO (LDO) $ 1.56
  • fantomFantom (FTM) $ 0.458921
  • based-brettBrett (BRETT) $ 0.129562
  • coredaoorgCore (CORE) $ 1.37
  • celestiaCelestia (TIA) $ 5.96
  • algorandAlgorand (ALGO) $ 0.142364
  • sei-networkSei (SEI) $ 0.365607
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,248.29
  • quant-networkQuant (QNT) $ 72.51
  • flowFlow (FLOW) $ 0.664726
  • gatechain-tokenGate (GT) $ 7.60
  • mantra-daoMANTRA (OM) $ 1.19
  • msolMarinade Staked SOL (MSOL) $ 218.71
  • kucoin-sharesKuCoin (KCS) $ 9.69
  • beam-2Beam (BEAM) $ 0.018143
  • elrond-erd-2MultiversX (EGLD) $ 33.25
  • popcatPopcat (POPCAT) $ 0.922827
  • bitcoin-svBitcoin SV (BSV) $ 45.52
  • axie-infinityAxie Infinity (AXS) $ 6.05
  • heliumHelium (HNT) $ 5.30
  • galaGALA (GALA) $ 0.023579
  • ethereum-name-serviceEthereum Name Service (ENS) $ 26.46
  • eosEOS (EOS) $ 0.576190
  • bittorrentBitTorrent (BTT) $ 0.00000089
  • flare-networksFlare (FLR) $ 0.019260
  • tokenize-xchangeTokenize Xchange (TKX) $ 10.40
  • neoNEO (NEO) $ 11.69
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,306.29
  • ordinalsORDI (ORDI) $ 38.69
  • akash-networkAkash Network (AKT) $ 3.29
  • dydx-chaindYdX (DYDX) $ 1.29
  • ethenaEthena (ENA) $ 0.455820
  • tezosTezos (XTZ) $ 0.776391
  • the-sandboxThe Sandbox (SAND) $ 0.327426
  • fasttokenFasttoken (FTN) $ 2.33
  • ecasheCash (XEC) $ 0.000038
  • usddUSDD (USDD) $ 0.998585
  • cat-in-a-dogs-worldcat in a dogs world (MEW) $ 0.008245
  • conflux-tokenConflux (CFX) $ 0.172672
  • worldcoin-wldWorldcoin (WLD) $ 2.34
  • roninRonin (RON) $ 2.06
  • starknetStarknet (STRK) $ 0.533169
  • nexoNEXO (NEXO) $ 1.21
  • sats-ordinalsSATS (Ordinals) (SATS) $ 0.00000032
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,499.47
  • fraxFrax (FRAX) $ 0.996639
  • decentralandDecentraland (MANA) $ 0.342923
  • raydiumRaydium (RAY) $ 2.37
  • chilizChiliz (CHZ) $ 0.069852
  • frax-etherFrax Ether (FRXETH) $ 3,246.72
  • pendlePendle (PENDLE) $ 3.86
  • paypal-usdPayPal USD (PYUSD) $ 0.999960
  • book-of-memeBOOK OF MEME (BOME) $ 0.008622
  • mina-protocolMina Protocol (MINA) $ 0.520468
  • aioz-networkAIOZ Network (AIOZ) $ 0.536050
  • oasis-networkOasis Network (ROSE) $ 0.087724
  • tether-goldTether Gold (XAUT) $ 2,389.14
  • mog-coinMog Coin (MOG) $ 0.000002
  • zksyncZKsync (ZK) $ 0.158697
  • havvenSynthetix Network (SNX) $ 1.73
  • iotaIOTA (IOTA) $ 0.164321
  • gnosisGnosis (GNO) $ 213.03
  • nervos-networkNervos Network (CKB) $ 0.012323
  • dexeDeXe (DEXE) $ 9.46
  • swethSwell Ethereum (SWETH) $ 3,456.57
  • klay-tokenKlaytn (KLAY) $ 0.143566
  • apecoinApeCoin (APE) $ 0.783687
  • astarAstar (ASTR) $ 0.074871
  • wormholeWormhole (W) $ 0.290227
  • layerzeroLayerZero (ZRO) $ 4.62
  • aerodrome-financeAerodrome Finance (AERO) $ 0.918205
  • safeSafe (SAFE) $ 1.18
  • livepeerLivepeer (LPT) $ 15.05
  • staked-frax-etherStaked Frax Ether (SFRXETH) $ 3,544.04
  • true-usdTrueUSD (TUSD) $ 1.00
  • axelarAxelar (AXL) $ 0.671085
  • zcashZcash (ZEC) $ 31.80
  • 1inch1inch (1INCH) $ 0.375543
  • xdce-crowd-saleXDC Network (XDC) $ 0.031208
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000085
  • theta-fuelTheta Fuel (TFUEL) $ 0.068683
  • kavaKava (KAVA) $ 0.420903
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.97
  • bitcoin-goldBitcoin Gold (BTG) $ 25.95
  • aevo-exchangeAevo (AEVO) $ 0.521985
  • illuviumIlluvium (ILV) $ 66.98
  • pax-goldPAX Gold (PAXG) $ 2,386.78
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.02
  • apenftAPENFT (NFT) $ 0.00000043
  • dog-go-to-the-moon-runeDOG•GO•TO•THE•MOON (Runes) (DOG) $ 0.004220
  • iotexIoTeX (IOTX) $ 0.044544
  • wemix-tokenWEMIX (WEMIX) $ 1.03
  • turboTurbo (TURBO) $ 0.005930
  • constitutiondaoConstitutionDAO (PEOPLE) $ 0.080384
  • usdbUSDB (USDB) $ 0.990374
  • h2o-daoH2O Dao (H2O) $ 0.481150
  • mx-tokenMX (MX) $ 4.00
  • jito-governance-tokenJito (JTO) $ 3.12
  • g-tokenGravity (G) $ 0.052509
  • project-galaxyGalxe (GAL) $ 3.19
  • woo-networkWOO (WOO) $ 0.197720
  • stader-ethxStader ETHx (ETHX) $ 3,360.83
  • ether-fiEther.fi (ETHFI) $ 2.18
  • safepalSafePal (SFP) $ 0.783978
  • manta-networkManta Network (MANTA) $ 0.965014
  • venomVenom (VENOM) $ 0.192539
  • compound-governance-tokenCompound (COMP) $ 51.18
  • stepnGMT (GMT) $ 0.153605
  • memecoin-2Memecoin (MEME) $ 0.015453
  • compound-ethercETH (CETH) $ 65.28
  • arkhamArkham (ARKM) $ 1.44
  • superfarmSuperVerse (SUPER) $ 0.762984
  • golemGolem (GLM) $ 0.341351
  • singularitynetSingularityNET (AGIX) $ 0.546369
  • rocket-poolRocket Pool (RPL) $ 16.22
  • blurBlur (BLUR) $ 0.186575
  • kusamaKusama (KSM) $ 21.52
  • dymensionDymension (DYM) $ 1.70
  • aragonAragon (ANT) $ 8.17
  • 0x0x Protocol (ZRX) $ 0.387234
  • availAvail (AVAIL) $ 0.195153
  • osmosisOsmosis (OSMO) $ 0.484599
  • zilliqaZilliqa (ZIL) $ 0.017197
  • ponkePONKE (PONKE) $ 0.591761
  • beldexBeldex (BDX) $ 0.047980
  • altlayerAltLayer (ALT) $ 0.138530
  • dashDash (DASH) $ 26.85
  • echelon-primeEchelon Prime (PRIME) $ 7.40
  • corgiaiCorgiAI (CORGIAI) $ 0.000922
  • curve-dao-tokenCurve DAO (CRV) $ 0.264787
  • enjincoinEnjin Coin (ENJ) $ 0.189142

Russian-language cybercrime operation mimics web3 games to target macOS, Windows

0 91

Russian-language cybercrime operation mimics web3 games to target macOS, Windows

  crypto.news 1 h

Russian-language cybercrime operation mimics web3 games to target macOS, Windows

A new malware is faking web3 gaming initiatives to distribute infostealers across macOS and Windows platforms.

A recent investigation by Insikt Group has unveiled a new Russian-language cybercrime operation targeting users with fake web3 gaming projects designed to distribute malware.

A Russian-language cybercriminal campaign is exploiting Web3 gaming to spread infostealers on macOS & Windows. This campaign mimics legit projects, targeting gamers for malware distribution. pic.twitter.com/BHk8x3ZeOK

— Recorded Future (@RecordedFuture) April 11, 2024

In a blog post on Apr. 11, Insikt Group’s cybersecurity analysts revealed that the malware aims to steal information from both macOS and Windows users, leveraging the allure of blockchain-based gaming for potential financial gains. The operation, dubbed “Web of Deceit: The Rise of Imitation Web3 Gaming Scams and Malware Infections,” is believed to be orchestrated by Russian-speaking hackers, as indicated by artifacts found in the HTML code.

Russian-language cybercrime operation mimics web3 games to target macOS, Windows

Webscript commonalities between the web3 projects | Source: Recorded Future

“While we cannot make a determination of their exact location, the presence of such artifacts suggests that the threat actors could be located in Russia or a nation within the Commonwealth of Independent States (CIS).”

Insikt Group

You might also like: Trend Micro reveals new malware targeting crypto wallets on Windows

The campaign is reportedly focused on the development of fake web3 gaming projects with minor changes in names and branding to appear legitimate. In a bid to lure victims, bad actors also create fake social media accounts to lend credibility to their fraudulent schemes.

Upon installation, the malware infects victims’ devices with various types of infostealer malware such as Atomic macOS Stealer (AMOS), Stealc, Rhadamanthys, or RisePro, tailored to the user’s operating system.

“The campaign targets Web3 gamers, exploiting their potential lack of cyber hygiene in the pursuit of profits. It represents a significant cross-platform threat, utilizing a variety of malware to compromise users’ systems.”

Insikt Group

The analysts noted that the cybercriminals have set up a strong system, allowing bad actors to “quickly adapt by rebranding or shifting focus upon detection.” The investigation also revealed that malware variants like AMOS can infect both Intel and Apple M1 Macs, trying to steal crypto from desktop wallets or extensions.

Once private data such as the operating system type, user-agent, IP address, and browser-connected crypto wallets are drained, they are sent to a pre-configured Telegram channel established by the threat actors, also in Russian. Although the extent of the scam remains unclear, Insikt Group asserts that the latest malware underscores a “strategic shift toward exploiting the intersection of emerging technologies and social engineering.”


Source

Leave A Reply

Your email address will not be published.