FBI and GCHQ issue joint advisory on Russian malware targeting crypto wallets

TL;DR Breakdown

  • A joint advisory from the FBI, NSA, CISA, and the UK’s NCSC has warned about a new malware called Infamous Chisel, linked to Russia’s GRU military intelligence agency, that targets cryptocurrency wallets and exchange apps on Android devices.
  • The malware specifically seeks out directories related to popular crypto applications like Brave, Binance, Coinbase, and the Trust crypto wallet, as well as communication platforms Telegram and Discord. It also targets the Android Keystore system for storing private keys.
  • Despite its low to medium sophistication and lack of stealth techniques, the malware poses a significant threat to digital assets, especially as it comes at a time when cybercriminals are increasingly targeting valuable digital assets, including cryptocurrencies.

Description

A joint advisory report from the Federal Bureau of Investigation (FBI), National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA), and the UK’s National Cyber Security Centre (NCSC) has shed light on a new malware strain known as Infamous Chisel. This malware is specifically designed to target cryptocurrency wallets and exchange applications. The malware … Read more

A joint advisory report from the Federal Bureau of Investigation (FBI), National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA), and the UK’s National Cyber Security Centre (NCSC) has shed light on a new malware strain known as Infamous Chisel. This malware is specifically designed to target cryptocurrency wallets and exchange applications.

The malware has been linked to a hacking unit within Russia’s GRU military intelligence agency known as Sandworm. 

According to the joint advisory report, Sandworm has previously targeted the Ukrainian military. Infamous Chisel is engineered to compromise Android devices, providing continuous access via the Tor network. Once installed, the malware periodically gathers and transmits data from the affected devices. The advisory report indicates that the malware is part of a broader campaign to target financial assets, including cryptocurrencies.

Malware targets major crypto apps and Android Keystore system

Infamous Chisel is not indiscriminate in its approach. It specifically searches for directories related to popular cryptocurrency applications such as Brave, Binance, Coinbase, and the Trust crypto wallet. Additionally, it targets communication platforms like Telegram and Discord. The malware also aims at the Android Keystore system, which is used for storing private keys. Every file in these targeted directories is extracted, posing a significant threat to the security of digital assets.

Despite its potentially devastating impact, the components used by Infamous Chisel are of low to medium sophistication and lack basic obfuscation or stealth techniques. This suggests that the actors behind the malware may not deem such concealment necessary, given that many Android devices lack a host-based detection system. 

The advisory comes at a time when digital assets are becoming increasingly valuable, attracting the attention of cybercriminals. Last month, security researchers issued warnings about malware aimed at stealing Apple users’ crypto assets through fake blockchain games.

In addition, nearly $1 billion has been lost to scams, hacks, and exploits in 2023, Cryptopolitan reported.

The joint advisory serves as a critical reminder of the escalating threats in the crypto space and underscores the need for enhanced cybersecurity measures.

Disclaimer. The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.

文章来源于互联网:FBI and GCHQ issue joint advisory on Russian malware targeting crypto wallets

Disclaimers:

1. You are solely responsible for your investment decisions and this info is not liable for any losses you may incur.

2. The copyright of this article belongs to the writer, it represents the writer's opinions only, not represents the site's ones. Not financial advice.

Previous 2023年9月2日 04:08
Next 2023年9月2日 05:05

Related articles

  • Japan Blockchain Association(JBA) requests for crypto tax revision to promote web3

    TL;DR Breakdown The Japan Blockchain Association(JBA) has asked the government to change the tax system to consider cryptocurrency. JBA’s proposal suggests three crypto reforms, all aimed at strengthening the nation’s position in the distributed web3 wave. Description The Japan Blockchain Association(JBA) has asked the government to change the tax system to consider cryptocurrency. JBA asserted that their analysis of the present tax structure shows that the development of web3 businesses in Japan is constrained. In particular, it asked to cancel taxes on earnings from cryptocurrency transactions and set the tax on personal … Read more The Japan Blockchain Association(JBA) has asked the government to change the tax system to consider cryptocurrency. JBA asserted that their analysis of the present tax structure shows that the development of web3 businesses in Japan is constrained. In particular, it asked to cancel taxes on earnings from cryptocurrency transactions and set the tax on personal transactions at a flat rate of 20%. JBA wants crypto tax reforms The Japan Blockchain Association has asked the government to change the tax legislation about cryptocurrencies and digital assets…

    Article 2023年7月30日
  • BoE CBDC Chief says digital pound will be pseudonymous and privacy-focused

    TL;DR Breakdown The BoE underlying technology for the United Kingdom’s CBDC could use an alternative to blockchain technology to advance the digital pound dubbed Britcoin. Tom Mutton asserts that the privacy aspect of the CBDC will not collect personal data. European legislatures call for MiCA 2.0 – but is it necessary? Description The Bank of England (BoE) has made substantial progress with its central bank digital currency (CBDC) program. Tom Mutton, director of fintech at the Bank of England, recently discussed the privacy aspect of the CBDC and why the central bank might consider alternatives to blockchain as the underlying technology. In the interview, Mutton stated that … Read more The Bank of England (BoE) has made substantial progress with its central bank digital currency (CBDC) program. Tom Mutton, director of fintech at the Bank of England, recently discussed the privacy aspect of the CBDC and why the central bank might consider alternatives to blockchain as the underlying technology. In the interview, Mutton stated that during a recent meeting of technologists hosted by the BoE to debate the design of…

    Article 2023年6月30日
  • China demands EU’s clear stance on their relationship

    TL;DR Breakdown China’s chief diplomat, Wang Yi, has requested the European Union to clarify its stance on their strategic partnership. This follows a shift in EU-China relations since 2019, with the EU viewing China as an economic competitor and “systemic rival”. EU leaders have recently been advocating for reduced dependence on China, a contrast to the original intent of their strategic partnership. Description Bridging the divide between China and the European Union has become a pressing matter for top diplomats. Wang Yi, China’s chief diplomat, recently called for the EU to provide greater clarity regarding the strategic partnership that binds these global powerhouses. Building trust or back-pedalling? In 2003, the European Union and China embarked on what was … Read more Bridging the divide between China and the European Union has become a pressing matter for top diplomats. Wang Yi, China’s chief diplomat, recently called for the EU to provide greater clarity regarding the strategic partnership that binds these global powerhouses. Building trust or back-pedalling? In 2003, the European Union and China embarked on what was deemed a comprehensive strategic…

    Article 2023年7月16日
  • BRICS to invite Saudi Arabia and Egypt to join despite caution from some members

    TL;DR Breakdown BRICS members have invited Saudi Arabia and other nations to join their coalition for global impact. BRICS believes a larger group could counter the Group of Seven’s global dominance, with China and Russia supporting the expansion. Description BRICS members are making arrangements to extend invitations to prominent oil exporter Saudi Arabia and several other nations to join their coalition to enhance their worldwide impact. At a summit taking place this week in Johannesburg, the heads of state from Brazil, Russia, India, China, and South Africa have reached a consensus to broaden the … Read more BRICS members are making arrangements to extend invitations to prominent oil exporter Saudi Arabia and several other nations to join their coalition to enhance their worldwide impact. At a summit taking place this week in Johannesburg, the heads of state from Brazil, Russia, India, China, and South Africa have reached a consensus to broaden the scope of their alliance, which marks the initial expansion of the group since 2010. BRICS’s plans to expand membership BRICS members have said a bigger group could help…

    Article 2023年8月24日
  • South Korea bans Haru Invest executives travel amid crypto fraud investigation

    TL;DR Breakdown South Korean authorities have issued a travel ban to executives of Haru Invest in connection with fraud charges. The travel prohibition comes against a broader background of increased scrutiny and regulation in the crypto business following the collapse of FTX and the arrest of its CEO, Sam Bankman Fried. Haru Invest has ceased withdrawals for its 80,000 subscribers in 140 countries and laid off around 100 employees. Description In a significant turn of events for the crypto sector, South Korea has banned the management of notable crypto business Haru Invest from leaving the country. Concerns about investor safety and regulatory compliance in digital assets prompted this action following a fraud probe against the company. This decision sends a solid message to would-be wrongdoers … Read more In a significant turn of events for the crypto sector, South Korea has banned the management of notable crypto business Haru Invest from leaving the country. Concerns about investor safety and regulatory compliance in digital assets prompted this action following a fraud probe against the company. This decision sends a solid message…

    Article 2023年6月29日
TOP