• bitcoinBitcoin (BTC) $ 66,379.00
  • ethereumEthereum (ETH) $ 3,008.13
  • tetherTether (USDT) $ 1.00
  • bnbBNB (BNB) $ 582.96
  • solanaSolana (SOL) $ 162.25
  • usd-coinUSDC (USDC) $ 1.00
  • xrpXRP (XRP) $ 0.520166
  • staked-etherLido Staked Ether (STETH) $ 3,004.36
  • the-open-networkToncoin (TON) $ 6.60
  • dogecoinDogecoin (DOGE) $ 0.155567
  • cardanoCardano (ADA) $ 0.455842
  • shiba-inuShiba Inu (SHIB) $ 0.000025
  • avalanche-2Avalanche (AVAX) $ 34.62
  • tronTRON (TRX) $ 0.124703
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 66,355.00
  • polkadotPolkadot (DOT) $ 6.92
  • bitcoin-cashBitcoin Cash (BCH) $ 455.93
  • nearNEAR Protocol (NEAR) $ 8.19
  • chainlinkChainlink (LINK) $ 13.84
  • matic-networkPolygon (MATIC) $ 0.687142
  • litecoinLitecoin (LTC) $ 82.35
  • fetch-aiFetch.ai (FET) $ 2.30
  • internet-computerInternet Computer (ICP) $ 12.30
  • uniswapUniswap (UNI) $ 7.35
  • leo-tokenLEO Token (LEO) $ 5.94
  • daiDai (DAI) $ 1.00
  • pepePepe (PEPE) $ 0.000011
  • render-tokenRender (RNDR) $ 10.47
  • ethereum-classicEthereum Classic (ETC) $ 27.24
  • hedera-hashgraphHedera (HBAR) $ 0.110586
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.999863
  • aptosAptos (APT) $ 8.50
  • immutable-xImmutable (IMX) $ 2.42
  • wrapped-eethWrapped eETH (WEETH) $ 3,122.64
  • crypto-com-chainCronos (CRO) $ 0.125293
  • cosmosCosmos Hub (ATOM) $ 8.42
  • mantleMantle (MNT) $ 0.993997
  • filecoinFilecoin (FIL) $ 5.80
  • blockstackStacks (STX) $ 2.16
  • stellarStellar (XLM) $ 0.107231
  • okbOKB (OKB) $ 49.94
  • dogwifcoindogwifhat (WIF) $ 3.00
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,950.84
  • the-graphThe Graph (GRT) $ 0.310372
  • kaspaKaspa (KAS) $ 0.122440
  • arweaveArweave (AR) $ 44.01
  • bittensorBittensor (TAO) $ 398.60
  • arbitrumArbitrum (ARB) $ 0.991099
  • vechainVeChain (VET) $ 0.036049
  • optimismOptimism (OP) $ 2.49
  • makerMaker (MKR) $ 2,798.20
  • moneroMonero (XMR) $ 134.85
  • suiSui (SUI) $ 1.05
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • fantomFantom (FTM) $ 0.814179
  • injective-protocolInjective (INJ) $ 23.91
  • thorchainTHORChain (RUNE) $ 6.55
  • theta-tokenTheta Network (THETA) $ 2.14
  • flokiFLOKI (FLOKI) $ 0.000214
  • bonkBonk (BONK) $ 0.000026
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,322.12
  • sei-networkSei (SEI) $ 0.586275
  • celestiaCelestia (TIA) $ 9.07
  • coredaoorgCore (CORE) $ 1.83
  • jupiter-exchange-solanaJupiter (JUP) $ 1.17
  • galaGALA (GALA) $ 0.044426
  • bitget-tokenBitget Token (BGB) $ 1.10
  • algorandAlgorand (ALGO) $ 0.180698
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,106.30
  • whitebitWhiteBIT Coin (WBT) $ 9.93
  • lido-daoLido DAO (LDO) $ 1.60
  • quant-networkQuant (QNT) $ 96.45
  • akash-networkAkash Network (AKT) $ 5.94
  • flowFlow (FLOW) $ 0.884272
  • aaveAave (AAVE) $ 86.20
  • bitcoin-svBitcoin SV (BSV) $ 63.50
  • beam-2Beam (BEAM) $ 0.025248
  • ondo-financeOndo (ONDO) $ 0.860365
  • singularitynetSingularityNET (AGIX) $ 0.955863
  • bittorrentBitTorrent (BTT) $ 0.000001
  • flare-networksFlare (FLR) $ 0.028046
  • dydx-chaindYdX (DYDX) $ 2.05
  • elrond-erd-2MultiversX (EGLD) $ 40.77
  • cheeleeCheelee (CHEEL) $ 19.12
  • neoNEO (NEO) $ 15.42
  • chilizChiliz (CHZ) $ 0.120919
  • ethenaEthena (ENA) $ 0.716563
  • gatechain-tokenGate (GT) $ 8.12
  • worldcoin-wldWorldcoin (WLD) $ 4.95
  • axie-infinityAxie Infinity (AXS) $ 7.24
  • zebec-protocolZebec Protocol (ZBC) $ 0.020451
  • wormholeWormhole (W) $ 0.573071
  • the-sandboxThe Sandbox (SAND) $ 0.438951
  • msolMarinade Staked SOL (MSOL) $ 193.79
  • tokenize-xchangeTokenize Xchange (TKX) $ 12.20
  • jasmycoinJasmyCoin (JASMY) $ 0.020089
  • ecasheCash (XEC) $ 0.000049
  • safeSafe (SAFE) $ 2.18
  • kucoin-sharesKuCoin (KCS) $ 9.69
  • eosEOS (EOS) $ 0.800923
  • tezosTezos (XTZ) $ 0.917595
  • mina-protocolMina Protocol (MINA) $ 0.807798
  • aioz-networkAIOZ Network (AIOZ) $ 0.800153
  • roninRonin (RON) $ 2.69
  • conflux-tokenConflux (CFX) $ 0.213239
  • book-of-memeBOOK OF MEME (BOME) $ 0.012380
  • havvenSynthetix Network (SNX) $ 2.61
  • starknetStarknet (STRK) $ 1.16
  • ribbon-financeRibbon Finance (RBN) $ 0.859540
  • ordinalsORDI (ORDI) $ 38.81
  • heliumHelium (HNT) $ 4.85
  • decentralandDecentraland (MANA) $ 0.428484
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,004.45
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,032.67
  • apecoinApeCoin (APE) $ 1.23
  • lido-staked-solLido Staked SOL (STSOL) $ 193.17
  • dexeDeXe (DEXE) $ 13.15
  • usddUSDD (USDD) $ 0.999434
  • kavaKava (KAVA) $ 0.663349
  • gnosisGnosis (GNO) $ 277.10
  • nexoNEXO (NEXO) $ 1.28
  • iotaIOTA (IOTA) $ 0.215334
  • axelarAxelar (AXL) $ 1.06
  • theta-fuelTheta Fuel (TFUEL) $ 0.105124
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.61
  • pendlePendle (PENDLE) $ 4.39
  • nervos-networkNervos Network (CKB) $ 0.015184
  • pyth-networkPyth Network (PYTH) $ 0.442539
  • livepeerLivepeer (LPT) $ 20.40
  • fraxFrax (FRAX) $ 1.00
  • echelon-primeEchelon Prime (PRIME) $ 16.27
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000109
  • klay-tokenKlaytn (KLAY) $ 0.174203
  • ocean-protocolOcean Protocol (OCEAN) $ 0.959108
  • fasttokenFasttoken (FTN) $ 1.97
  • bitcoin-goldBitcoin Gold (BTG) $ 35.28
  • frax-etherFrax Ether (FRXETH) $ 2,996.38
  • blurBlur (BLUR) $ 0.378256
  • oasis-networkOasis Network (ROSE) $ 0.088931
  • mantra-daoMANTRA (OM) $ 0.723480
  • sats-ordinalsSATS (Ordinals) (SATS) $ 0.00000028
  • tether-goldTether Gold (XAUT) $ 2,386.46
  • osmosisOsmosis (OSMO) $ 0.872886
  • jito-governance-tokenJito (JTO) $ 4.71
  • swethSwell Ethereum (SWETH) $ 3,175.02
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,217.31
  • dydxdYdX (ETHDYDX) $ 2.05
  • illuviumIlluvium (ILV) $ 84.97
  • wemix-tokenWEMIX (WEMIX) $ 1.53
  • golemGolem (GLM) $ 0.543119
  • xdce-crowd-saleXDC Network (XDC) $ 0.036186
  • woo-networkWOO (WOO) $ 0.288087
  • arkhamArkham (ARKM) $ 2.38
  • curve-dao-tokenCurve DAO (CRV) $ 0.421662
  • true-usdTrueUSD (TUSD) $ 1.00
  • astarAstar (ASTR) $ 0.090241
  • aerodrome-financeAerodrome Finance (AERO) $ 1.10
  • popcatPopcat (POPCAT) $ 0.502919
  • iotexIoTeX (IOTX) $ 0.051207
  • memecoin-2Memecoin (MEME) $ 0.026515
  • apenftAPENFT (NFT) $ 0.00000048
  • mx-tokenMX (MX) $ 4.82
  • radixRadix (XRD) $ 0.045370
  • staked-frax-etherStaked Frax Ether (SFRXETH) $ 3,244.00
  • dymensionDymension (DYM) $ 2.72
  • raydiumRaydium (RAY) $ 1.76
  • venomVenom (VENOM) $ 0.279516
  • magaMAGA (TRUMP) $ 9.90
  • pepecoin-2PepeCoin (PEPECOIN) $ 3.93
  • ankrAnkr Network (ANKR) $ 0.045358
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.08
  • ethereum-name-serviceEthereum Name Service (ENS) $ 14.36
  • superfarmSuperVerse (SUPER) $ 0.990326
  • 1inch1inch (1INCH) $ 0.383883
  • stepnGMT (GMT) $ 0.220076
  • enjincoinEnjin Coin (ENJ) $ 0.301083
  • pax-goldPAX Gold (PAXG) $ 2,369.84
  • celoCelo (CELO) $ 0.814206
  • zilliqaZilliqa (ZIL) $ 0.023522
  • rocket-poolRocket Pool (RPL) $ 20.93
  • altlayerAltLayer (ALT) $ 0.313459
  • 0x0x Protocol (ZRX) $ 0.503153
  • polymeshPolymesh (POLYX) $ 0.404208
  • nosanaNosana (NOS) $ 4.98
  • manta-networkManta Network (MANTA) $ 1.64
  • ravencoinRavencoin (RVN) $ 0.029589
  • corgiaiCorgiAI (CORGIAI) $ 0.001188
  • zetachainZetaChain (ZETA) $ 1.73
  • holotokenHolo (HOT) $ 0.002290
  • ether-fiEther.fi (ETHFI) $ 3.54
  • terra-luna-2Terra (LUNA) $ 0.590046
  • siacoinSiacoin (SC) $ 0.006997
  • project-galaxyGalxe (GAL) $ 3.47
  • compound-wrapped-btccWBTC (CWBTC) $ 1,331.80
  • amp-tokenAmp (AMP) $ 0.007183
  • compound-governance-tokenCompound (COMP) $ 55.76
  • aelfaelf (ELF) $ 0.525541
  • qtumQtum (QTUM) $ 3.62
  • stader-ethxStader ETHx (ETHX) $ 3,086.22
  • paypal-usdPayPal USD (PYUSD) $ 0.999261

Russian-language cybercrime operation mimics web3 games to target macOS, Windows

0 28

Russian-language cybercrime operation mimics web3 games to target macOS, Windows

  crypto.news 1 h

Russian-language cybercrime operation mimics web3 games to target macOS, Windows

A new malware is faking web3 gaming initiatives to distribute infostealers across macOS and Windows platforms.

A recent investigation by Insikt Group has unveiled a new Russian-language cybercrime operation targeting users with fake web3 gaming projects designed to distribute malware.

A Russian-language cybercriminal campaign is exploiting Web3 gaming to spread infostealers on macOS & Windows. This campaign mimics legit projects, targeting gamers for malware distribution. pic.twitter.com/BHk8x3ZeOK

— Recorded Future (@RecordedFuture) April 11, 2024

In a blog post on Apr. 11, Insikt Group’s cybersecurity analysts revealed that the malware aims to steal information from both macOS and Windows users, leveraging the allure of blockchain-based gaming for potential financial gains. The operation, dubbed “Web of Deceit: The Rise of Imitation Web3 Gaming Scams and Malware Infections,” is believed to be orchestrated by Russian-speaking hackers, as indicated by artifacts found in the HTML code.

Russian-language cybercrime operation mimics web3 games to target macOS, Windows

Webscript commonalities between the web3 projects | Source: Recorded Future

“While we cannot make a determination of their exact location, the presence of such artifacts suggests that the threat actors could be located in Russia or a nation within the Commonwealth of Independent States (CIS).”

Insikt Group

You might also like: Trend Micro reveals new malware targeting crypto wallets on Windows

The campaign is reportedly focused on the development of fake web3 gaming projects with minor changes in names and branding to appear legitimate. In a bid to lure victims, bad actors also create fake social media accounts to lend credibility to their fraudulent schemes.

Upon installation, the malware infects victims’ devices with various types of infostealer malware such as Atomic macOS Stealer (AMOS), Stealc, Rhadamanthys, or RisePro, tailored to the user’s operating system.

“The campaign targets Web3 gamers, exploiting their potential lack of cyber hygiene in the pursuit of profits. It represents a significant cross-platform threat, utilizing a variety of malware to compromise users’ systems.”

Insikt Group

The analysts noted that the cybercriminals have set up a strong system, allowing bad actors to “quickly adapt by rebranding or shifting focus upon detection.” The investigation also revealed that malware variants like AMOS can infect both Intel and Apple M1 Macs, trying to steal crypto from desktop wallets or extensions.

Once private data such as the operating system type, user-agent, IP address, and browser-connected crypto wallets are drained, they are sent to a pre-configured Telegram channel established by the threat actors, also in Russian. Although the extent of the scam remains unclear, Insikt Group asserts that the latest malware underscores a “strategic shift toward exploiting the intersection of emerging technologies and social engineering.”


Source

Leave A Reply

Your email address will not be published.