Trustwave Spiderlabs Researchers Warn of New Strain of Malware That Drains Crypto Funds
According to researchers at Trustwave Spiderlabs, a strain of malware known as Rilide is believed to be helping cybercriminals steal funds from cryptocurrency exchanges. Although the steps being taken to tackle this malw...
According to researchers at Trustwave Spiderlabs, a strain of malware known as Rilide is believed to be helping cybercriminals steal funds from cryptocurrency exchanges. Although the steps being taken to tackle this malware are likely to make life more difficult for cybercriminals, two researchers — Pawel Knapczyk and Wojciech Cieslak — said this alone may not be enough to “solve the issue entirely.”
Malicious Browser ExtensionsResearchers at Trustwave Spiderlabs recently said they discovered a new strain of malware which clandestinely draws funds from crypto wallets. According to the researchers, the malware, known as Rilide, is thought to disguise itself as a legitimate Google Drive extension. Besides giving cybercriminals the ability to monitor the browsing history of their targeted victims, Rilide enables the injection of “malicious scripts to steal funds from cryptocurrency exchanges.”
In their blog post published on April 4, the two researchers Pawel Knapczyk and Wojciech Cieslak concede that Rilide is not the first malware to use malicious browser extensions. However, the researchers said they have seen how the malware tricks users before it drains funds from their respective crypto wallets.
“Where this malware differs is it has the effective and rarely used ability to utilize forged dialogs to deceive users into revealing their two-factor authentication (2FA) and then withdraw cryptocurrencies in the background,” the researchers argued.
While steps such as the pending enforcement of the so-called manifest v3 are expected to make life a little more difficult for cybercriminals, Knapczyk and Cieslak assert that this alone may not be enough “to solve the issue entirely as most of the functionalities leveraged by Rilide will still be available.”
Meanwhile, in their warning to users, the two researchers reiterated the importance of remaining “vigilant and sceptical” each time they received unsolicited emails. They added that users must “never assume that any content on the internet is safe, even if it appears to be.” Similarly, users should always strive to stay informed and educated about the latest events in the cybersecurity industry.
What are your thoughts on this story? Let us know what you think in the comments section below.
Original source
Read on Bitcoin NewsRelated market context
Blackrock’s IBIT Leads $86 Million Bitcoin ETF Inflow as Ethereum Funds Extend Outflow Streak
Spot bitcoin exchange-traded funds (ETFs) drew $85.85 million in net inflows on Friday, with every one of the 12 tracked funds avo...
Major crypto exchanges cancel SpaceX IPO allocations, promising refunds
Elon Musk’s SpaceX completed its landmark IPO on the Nasdaq on Friday, but crypto users seeking tokenized exposure to the IPO were...
Crypto Laundering Network Linked To Ransomware Gangs Dismantled By Law Enforcement
TL;DR Chainalysis says law enforcement has dismantled AudiA6, a crypto laundering network linked to ransomware and darknet activit...
Bitcoin users upgrade to P2WPKH inputs, rising to 76%
The organic shift to P2WPKH enhances Bitcoin's efficiency, allowing more transactions per block and reducing fee pressures during...
Bitcoin and Ether ETFs Lose $249 Million While HYPE Funds Extend Inflow Run
Crypto ETF flows stayed uneven on Wednesday, June 10, as bitcoin funds recorded a fourth straight day of outflows and ether ETFs r...
‘AudiA6’ crypto laundering suspects face extradition to US
The pair behind a $389 million cryptocurrency laundering service dubbed “AudiA6” have been arrested following international invest...