FBI and GCHQ issue joint advisory on Russian malware targeting crypto wallets

TL;DR Breakdown

  • A joint advisory from the FBI, NSA, CISA, and the UK’s NCSC has warned about a new malware called Infamous Chisel, linked to Russia’s GRU military intelligence agency, that targets cryptocurrency wallets and exchange apps on Android devices.
  • The malware specifically seeks out directories related to popular crypto applications like Brave, Binance, Coinbase, and the Trust crypto wallet, as well as communication platforms Telegram and Discord. It also targets the Android Keystore system for storing private keys.
  • Despite its low to medium sophistication and lack of stealth techniques, the malware poses a significant threat to digital assets, especially as it comes at a time when cybercriminals are increasingly targeting valuable digital assets, including cryptocurrencies.

Description

A joint advisory report from the Federal Bureau of Investigation (FBI), National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA), and the UK’s National Cyber Security Centre (NCSC) has shed light on a new malware strain known as Infamous Chisel. This malware is specifically designed to target cryptocurrency wallets and exchange applications. The malware … Read more

A joint advisory report from the Federal Bureau of Investigation (FBI), National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA), and the UK’s National Cyber Security Centre (NCSC) has shed light on a new malware strain known as Infamous Chisel. This malware is specifically designed to target cryptocurrency wallets and exchange applications.

The malware has been linked to a hacking unit within Russia’s GRU military intelligence agency known as Sandworm. 

According to the joint advisory report, Sandworm has previously targeted the Ukrainian military. Infamous Chisel is engineered to compromise Android devices, providing continuous access via the Tor network. Once installed, the malware periodically gathers and transmits data from the affected devices. The advisory report indicates that the malware is part of a broader campaign to target financial assets, including cryptocurrencies.

Malware targets major crypto apps and Android Keystore system

Infamous Chisel is not indiscriminate in its approach. It specifically searches for directories related to popular cryptocurrency applications such as Brave, Binance, Coinbase, and the Trust crypto wallet. Additionally, it targets communication platforms like Telegram and Discord. The malware also aims at the Android Keystore system, which is used for storing private keys. Every file in these targeted directories is extracted, posing a significant threat to the security of digital assets.

Despite its potentially devastating impact, the components used by Infamous Chisel are of low to medium sophistication and lack basic obfuscation or stealth techniques. This suggests that the actors behind the malware may not deem such concealment necessary, given that many Android devices lack a host-based detection system. 

The advisory comes at a time when digital assets are becoming increasingly valuable, attracting the attention of cybercriminals. Last month, security researchers issued warnings about malware aimed at stealing Apple users’ crypto assets through fake blockchain games.

In addition, nearly $1 billion has been lost to scams, hacks, and exploits in 2023, Cryptopolitan reported.

The joint advisory serves as a critical reminder of the escalating threats in the crypto space and underscores the need for enhanced cybersecurity measures.

Disclaimer. The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.

文章来源于互联网:FBI and GCHQ issue joint advisory on Russian malware targeting crypto wallets

Disclaimers:

1. You are solely responsible for your investment decisions and this info is not liable for any losses you may incur.

2. The copyright of this article belongs to the writer, it represents the writer's opinions only, not represents the site's ones. Not financial advice.

Previous 2023年9月2日 04:08
Next 2023年9月2日 05:05

Related articles

  • Ethscriptions protocol suffers smart contract exploit

    TL;DR Breakdown Ethscriptions protocol has suffered a massive setback after its marketplace was hacked. Addressing security concerns for a relaunched marketplace. Description The Ethsubscriptions protocol, a groundbreaking initiative allowing users to create and share digital objects on the Ethereum blockchain, has encountered a significant setback due to a recent hack on its main marketplace. Launched just last month by Tom Lehman, co-founder and former CEO of Genius.com, Ethscriptions is a novel concept that leverages transaction “calldata” to … Read more The Ethsubscriptions protocol, a groundbreaking initiative allowing users to create and share digital objects on the Ethereum blockchain, has encountered a significant setback due to a recent hack on its main marketplace. Launched just last month by Tom Lehman, co-founder and former CEO of Genius.com, Ethscriptions is a novel concept that leverages transaction “calldata” to record non-financial data on the Ethereum network. Hackers stole listed Ethscriptions on the protocol While the Ethsubscriptions protocol itself and other applications using the technology remain unaffected, the marketplace on Ethscriptions.com suffered a security breach resulting in the theft of a considerable number of listed…

    Article 2023年7月18日
  • Magic Eden announces support for BRC-20 tokens

    TL;DR Breakdown Magic Eden has announced that the platform now supports BRC-20 tokens. The platform wants to merge NFTs and Bitcoin-based tokens. Description Multi-chain NFT marketplace Magic Eden has announced the inclusion of support for BRC-20 tokens, thereby expanding its Ordinals offerings to encompass tokens built on the Bitcoin network. The integration of BRC-20 support is scheduled for Tuesday at 8 pm ET, according to a spokesperson from Magic Eden. Magic Eden will support tokens built on the … Read more Multi-chain NFT marketplace Magic Eden has announced the inclusion of support for BRC-20 tokens, thereby expanding its Ordinals offerings to encompass tokens built on the Bitcoin network. The integration of BRC-20 support is scheduled for Tuesday at 8 pm ET, according to a spokesperson from Magic Eden. Magic Eden will support tokens built on the Bitcoin network This development allows users not only to trade BRC-20 tokens on the secondary market but also to create new tokens on the Bitcoin network. Traders will be able to mint these tokens directly through Magic Eden’s launchpad, which provides premium services for…

    Article 2023年7月1日
  • Polygon network unveils AI-powered guide for Web3 enthusiasts

    TL;DR Breakdown Polygon introduces an AI interface, Polygon Copilot, to help users and developers navigate its ecosystem. Copilot offers personas for different expertise levels, suggests related queries, provides analytics, and enables zkEVM and PoS NFTs minting. Future upgrades include more commands, extensions, and plugins for task automation and streamlined processes as part of “Polygon 2.0”. Description Polygon network, a pioneering Ethereum scaling solution, has introduced a revolutionary tool to aid developers and users in their blockchain journey: the Polygon Copilot. This state-of-the-art artificial intelligence (AI) interface, powered by OpenAI’s GPT-4 language model, is poised to transform how users interact with the Polygon ecosystem​. As Polygon 2.0 revolutionizes the blockchain landscape with … Read more Polygon network, a pioneering Ethereum scaling solution, has introduced a revolutionary tool to aid developers and users in their blockchain journey: the Polygon Copilot. This state-of-the-art artificial intelligence (AI) interface, powered by OpenAI’s GPT-4 language model, is poised to transform how users interact with the Polygon ecosystem​. As Polygon 2.0 revolutionizes the blockchain landscape with its unprecedented scaling and cross-chain capabilities, the need for a user-friendly,…

    Article 2023年6月24日
  • Azuki enthusiasts vs. founder – will $39M worth of ETH be recovered?

    TL;DR Breakdown A newly formed decentralized autonomous organization (DAO) comprised of Azuki enthusiasts has put forth a proposal to reclaim 20,000 Ether from Zagabond, the founder of the renowned NFT brand Azuki.  The recovered funds would then be allocated back to the DAO to support the growth of the broader platforms community. Some holders claim to have no prior knowledge of AzukiDAO and suspect it may be either fake or driven by malicious intentions. Description A newly formed decentralized autonomous organization (DAO) comprised of Azuki enthusiasts has put forth a proposal to reclaim 20,000 Ether from Zagabond, the founder of the renowned NFT brand Azuki. The proposal, initiated on July 2, aims to hire a lawyer and take legal action against Zagabond, also known as Alex Xu, for allegedly engaging … Read more A newly formed decentralized autonomous organization (DAO) comprised of Azuki enthusiasts has put forth a proposal to reclaim 20,000 Ether from Zagabond, the founder of the renowned NFT brand Azuki. The proposal, initiated on July 2, aims to hire a lawyer and take legal action against Zagabond,…

    Article 2023年7月5日
  • Nigeria takes top spot in global crypto awareness survey

    TL;DR Breakdown Nigeria has emerged as the country with the highest level of crypto awareness in a recent Consensys survey. Cryptocurrency trends beyond Nigeria. Description In a groundbreaking global survey conducted by ConsenSys and YouGov, Nigeria has emerged as the country with the highest level of cryptocurrency awareness. This survey, which aimed to gauge the perception of cryptocurrencies and the broader Web3 ecosystem in various countries, encompassed 15,158 individuals aged between 18 and 65 across 15 nations. Report shows that … Read more In a groundbreaking global survey conducted by ConsenSys and YouGov, Nigeria has emerged as the country with the highest level of cryptocurrency awareness. This survey, which aimed to gauge the perception of cryptocurrencies and the broader Web3 ecosystem in various countries, encompassed 15,158 individuals aged between 18 and 65 across 15 nations. Report shows that 99% of Nigerians understand Web3 The most striking revelation from this comprehensive study is that Nigeria, Africa’s largest economy, boasts the most cryptocurrency-aware population on the planet. An astounding 99% of Nigerians and 98% of South Africans demonstrated a deeper understanding of…

    Article 2023年9月5日
TOP