Bandit Stealer: The new malware menace in the cryptocurrency space

TL;DR Breakdown

  • Bandit Stealer is new malware targeting web browsers and crypto wallets.
  • It spreads via phishing emails and fake installers, collecting personal and financial data.
  • The rise of such malware underlines a thriving underground info-stealer market, raising cybersecurity concerns.

In a world increasingly dependent on digital transactions and cryptocurrencies, a new form of malware called “Bandit Stealer” has reared its head, threatening web browsers and cryptocurrency wallets. Trend Micro, a leading cybersecurity firm, has raised the alarm over this stealthy, info-stealing malware developed using the Go programming language. This language choice suggests potential cross-platform compatibility, expanding the malware’s potential reach in the future.

A calculated malware approach

Bandit Stealer’s sophisticated programming allows it to function undetected on Windows systems by manipulating a legitimate Windows command-line utility program, “runas.exe.,” according to Trend Micro’s report. This maneuver enables Bandit Stealer to execute itself with administrative access, bypassing built-in security measures. However, Microsoft’s stringent access control mitigations have successfully thwarted unauthorized execution thus far, requiring proper credentials for administrator-level operations.

The malware operates with guile and precision. Bandit Stealer initiates a series of checks to ascertain whether it’s operating within a sandbox or testing environment. To cover its tracks and establish a persistent presence, it terminates processes associated with anti-malware solutions and modifies the Windows Registry. This groundwork allows it to launch a sweeping data collection spree, hoarding a wide array of information that ranges from personal and financial data stored in web browsers to crypto wallet details.

The expanding underground info-stealer market

Bandit Stealer’s propagation typically begins with phishing emails. These malicious emails contain a dropper file that opens a seemingly harmless Microsoft Word attachment, distracting while the malware quietly infects the system in the background. Alarmingly, it has also been distributed through fake installers, tricking users into unwittingly launching the malware.

This stealthy malware enters an evolving cybersecurity landscape where info-stealer marketplaces are booming. An explosive 670% increase in stolen logs available on underground forums was reported between June 2021 and May 2023. Cybersecurity experts suggest that Bandit Stealer’s emergence underscores the continuing evolution of stealer malware, propelled by the malware-as-a-service (MaaS) market.

“An entire underground economy and supporting infrastructure have developed around info-stealers, making it possible but potentially lucrative for relatively low-skilled threat actors to get involved,” warns Don Smith, vice president of Secureworks CTU.

The cryptocurrency space is on high alert as Bandit Stealer threatens digital security. The broad-reaching implications of the data these stealers collect — from identity theft, financial gain, and data breaches to credential stuffing attacks and account takeovers — reaffirm the necessity for enhanced cybersecurity measures in a digital age.

Disclaimer. The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.

文章来源于互联网:Bandit Stealer: The new malware menace in the cryptocurrency space

Disclaimers:

1. You are solely responsible for your investment decisions and this info is not liable for any losses you may incur.

2. The copyright of this article belongs to the writer, it represents the writer's opinions only, not represents the site's ones. Not financial advice.

Previous 2023年5月31日 04:00
Next 2023年5月31日 08:07

Related articles

  • Scammers target Meta’s new app Threads with imposter accounts

    TL;DR Breakdown Despite Threads growing popularity, with over 98 million sign-ups since its release on July 5, several high-profile Crypto Twitter users have already encountered imposter accounts and warned others about them. One of the notable incidents occurred when Wombex Finance, a decentralized finance platform, tweeted about a Threads account impersonating their project.  These scammers links typically aim to trick unsuspecting targets into sharing sensitive information, such as their crypto exchange login credentials, crypto wallet seed phrases, or connecting their wallets to crypto-draining smart contracts. Description Since the launch of Meta’s new microblogging app, Threads, scammers have wasted no time in attempting to deceive users. Despite the app’s growing popularity, with over 98 million sign-ups since its release on July 5, several high-profile Crypto Twitter users have already encountered imposter accounts and warned others about them. One of the notable incidents … Read more Since the launch of Meta’s new microblogging app, Threads, scammers have wasted no time in attempting to deceive users. Despite the app’s growing popularity, with over 98 million sign-ups since its release on July 5, several…

    Article 2023年7月11日
  • Cash dash climax? Bank of America’s unexpected view

    TL;DR Breakdown Bank of America suggests that the investors’ trend of opting for cash, prevalent throughout the year, might be nearing its peak. A net outflow of $10 billion from cash over the past two weeks indicates this shift. Tech stocks and high-yield bonds have recently seen strong inflows due to the growing excitement about AI and signs of easing inflation. Description The financial landscape has recently been marked by a scramble towards cash, a reaction to uncertainty and upheaval in the market. However, recent insights from the Bank of America’s global research team suggest we may be witnessing the culmination of this investor sprint. Riding the waves of cash flows Throughout this tumultuous year, investors have … Read more The financial landscape has recently been marked by a scramble towards cash, a reaction to uncertainty and upheaval in the market. However, recent insights from the Bank of America’s global research team suggest we may be witnessing the culmination of this investor sprint. Riding the waves of cash flows Throughout this tumultuous year, investors have been notably drawn to the…

    Article 2023年7月23日
  • SEBA Bank gains preliminary approval for crypto services in Hong Kong

    TL;DR Breakdown SEBA Bank’s Hong Kong arm receives in-principle approval from the SFC, allowing it to engage in various crypto-related activities like over-the-counter derivatives and asset management. The approval highlights Hong Kong’s strategic position as a potential gateway to China’s future crypto market, especially given its robust regulatory framework and unique status as a Special Administrative Region of China. Description In a significant development for the cryptocurrency industry, SEBA Bank’s Hong Kong division has secured in-principle approval from the Hong Kong Securities and Futures Commission (SFC). This approval allows SEBA Hong Kong to engage in a range of crypto-related activities, including over-the-counter derivatives, advisory services on virtual assets, and asset management for discretionary accounts in … Read more In a significant development for the cryptocurrency industry, SEBA Bank’s Hong Kong division has secured in-principle approval from the Hong Kong Securities and Futures Commission (SFC). This approval allows SEBA Hong Kong to engage in a range of crypto-related activities, including over-the-counter derivatives, advisory services on virtual assets, and asset management for discretionary accounts in virtual assets. The announcement comes amid a…

    Article 2023年8月30日
  • China wants U.S. to meet it halfway and fix ties

    TL;DR Breakdown China urges the U.S. to improve mutual understanding and reconcile strained relations amidst escalating trade disputes. Beijing’s decision to restrict U.S. firm Micron Technology Inc’s memory chip sales spurs immediate market response, affecting global chipmakers’ shares. In a crucial push for a change of direction in its strained relations with the United States, China voiced its desire on Monday for the U.S. to cultivate a correct understanding of its global counterpart and to join them in a mutual effort to steer their bilateral relations back on course. Beijing’s call comes at a time of escalating tension, triggered by a move to restrict U.S. firm Micron Technology Inc’s sales of memory chips to vital domestic sectors. This decision has not only intensified the trade conflict with Washington but has also stimulated the stock market, boosting shares of companies that could potentially benefit from the move. Trade contention stirs market response China’s cyber-regulation watchdog announced late on Sunday that Micron, the largest U.S. memory chip manufacturer, had not passed its network security assessment and would be prohibited from selling to…

    Article 2023年5月24日
  • North Korean hackers loot over $200 million in crypto in 2023, totaling $2 billion in five years: Report

    TL;DR Breakdown North Korean hackers stole over $200 million in crypto in 2023, part of $2 billion looted in five years, mainly targeting DeFi protocols. Hackers have evolved laundering techniques, using complex methods like chain-hopping to evade sanctions. Description Hackers linked to North Korea have stolen over $200 million in cryptocurrency so far in 2023, accounting for 20% of all stolen crypto this year, according to a report by blockchain intelligence firm TRM Labs. The theft is part of over $2 billion looted by cybercriminals in the last five years, with 30 different crypto-project … Read more Hackers linked to North Korea have stolen over $200 million in cryptocurrency so far in 2023, accounting for 20% of all stolen crypto this year, according to a report by blockchain intelligence firm TRM Labs. Source: TRM Labs The theft is part of over $2 billion looted by cybercriminals in the last five years, with 30 different crypto-project attacks. Also, the majority of these exploits have focused on decentralized finance (DeFi), particularly targeting cross-chain bridges. Last year was the most successful year for…

    Article 2023年8月21日
TOP