Hackers Are Taking Advantage of Typing Mistakes to Steal Cryptocurrency
A group of hackers have taken advantage of typing mistakes in order to introduce malware to Android phones and Windows-based PCs. Using a technique called typosquatting, which consists of registering domains that are dra...
A group of hackers have taken advantage of typing mistakes in order to introduce malware to Android phones and Windows-based PCs. Using a technique called typosquatting, which consists of registering domains that are dramatically near to the ones of official brands of organizations, hackers are getting data and private keys from unsuspected users, according to a report issued by Cyble.
Typing a Web Domain Incorrectly Might Be Dangerous for Your WalletHackers have set up a net of malware-infected domains that take advantage of the typing inaccuracies of users when getting to a determined website. According to a report issued by Cyble, a cyber security and digital risk assessment firm, these domains mimic renowned organizations and apps, like the Google Play Store, Apkure, and Apkcombo, among others.
Users that visit the domains are prompted to download an infected version of the app requested, which will serve as a vehicle for the infection. The target device, be it an Android phone or a Windows PC, will then be infected with a version of ERMAC, a malware trojan that allows the threat actors to access several critical private data in the targeted device, including private keys.
The banking trojan was first discovered in 2021 and it is now targeting more than 460 applications, allowing attackers to rent its services for $5,000 a month.
Hackers Targeting More Sites and Brands InvolvedWhile the mentioned report only found evidence of a little group of apps and brands being mimicked, further investigation by another security source confirmed that at least 27 brands and app names are being targeted by this kind of attack. Among these are Tiktok
Vidmate, Snapchat, Paypal, and even more dev-focused apps like Notepad+ and the Tor Browser.
Cryptocurrency wallets and crypto mining and related sites are also on the list. Tronlink
Metamask, Phantom, Cosmos Wallet, and Ethermine are part of the group of sites also targeted. Each one of these fake domains has different typo-squatted domains registered, to maximize the effect and damage of the attack.
Cybel makes different recommendations to avoid this kind of attack, including having an effective antivirus protecting your phone and PC, and monitoring your wallets and banking accounts regularly. However, the best advice is to arrive at the web pages of software and apps through the use of a search engine, avoiding blog-posted directions and links shown as part of advertisement campaigns.
What do you think about hackers taking advantage of misspelled domain names to steal crypto? Tell us in the comments section below.
Original source
Read on Bitcoin NewsRelated market context
Humanity Protocol’s $36M hack linked to suspected North Korean hackers, Quantstamp reports
The incident underscores the urgent need for improved cybersecurity measures and key management practices to protect against sophi...
Citigroup Launches Tokenized Private Share Trading for Wealthy Global Clients
Citigroup is creating a blockchain-based service that lets wealthy and institutional clients trade exposure to private companies t...
Coinbase Quantum Report Warns Millions Of Bitcoin Could Face Future Security Risks
TL;DR Coinbase’s Quantum Advisory Council published a report on post-quantum migration and abandoned coins. The report estimates t...
$1.5 Trillion Transacted: Rain Report Reveals the Massive Scale of Latam’s Stablecoin Economy
The crypto card company stressed that these volumes result from a more conscious use of stablecoins, driven by concrete problem-so...
FIFA World Cup 2026 crypto partnerships get massive visibility boost as tournament enters group stage
The 2026 FIFA World Cup's crypto partnerships highlight the growing institutional adoption of digital assets, impacting investor s...
Banks are buying Bitcoin vaults, but a quantum problem may be waiting inside
The banks are finally buying the vaults. In May, BNY, the world's largest custodian with $59.4 trillion in assets under custody an...