PrimePay Networks

Microsoft Identifies Remote Access Trojan Built to Drain Crypto Wallets

crypto trojan

Sophisticated malware is becoming an increasingly potent threat, as evidenced by the remote access trojan (RAT) that was recently discovered by Microsoft.

Dubbed StilachiRAT, the malware is designed to scan the Google Chrome browser for any of 20 crypto wallet extensions, including platforms like Coinbase Wallet, MetaMask, and Trust Wallet.

According to Microsoft, once the RAT detects a crypto wallet, it employs various techniques to siphon information from the system. These include extracting saved browser credentials and monitoring clipboard activity for passwords or crypto keys.

Once this sensitive data falls into the hands of bad actors, they can quickly drain the victim’s crypto wallet.

Bringing Awareness to the Capabilities

Microsoft first discovered evidence of StilachiRAT in November, and the tech firm said that it hasn’t yet been able to identify the cybercriminals behind the malware.

Though the RAT hasn’t yet gained widespread traction, Microsoft felt it was necessary to raise awareness about the malware due to its capabilities, the rapid evolution of the malware ecosystem, and to help reduce the number of potential victims.

One of the functions that makes StilachiRAT more impactful is its built-in evasion and anti-forensics mechanisms. For example, the malware can clear event logs and detect if it is operating in a sandbox environment to stave off detection.

To protect themselves from this threat, Microsoft suggests that crypto holders ensure they have up-to-date antivirus software, anti-phishing tools, and anti-malware defenses on their devices.

Threats Against Crypto Owners

Cryptocurrencies have gained significant attention over the past few years, but their decentralized nature—coupled with an often lacking regulatory framework—has made digital asset owners prime targets for cybercriminals.

These threats are supercharged by technology like Malware-as-a-Service (MaaS) platforms, which lower the technological bar for criminals and even allow them to outsource attacks. According to data from Darktrace, MaaS-based attacks picked up steam in the latter half of last year and now account for 57% of identified fraud activities.

One of the most commonly used malware tools identified in the Darktrace study was remote access trojan software, because of its efficiency and capability.

The post Microsoft Identifies Remote Access Trojan Built to Drain Crypto Wallets appeared first on PaymentsJournal.

Facebook
LinkedIn
Pinterest
Reddit
StumbleUpon
Digg
Twitter
Tumblr
The Local Luminary
The Local Luminary

The Local Luminary is your dedicated guide to uncovering the stories, strategies, and successes of standout local businesses. With a passion for community growth and a knack for highlighting what makes businesses thrive, The Local Luminary connects you with actionable insights to boost your own business visibility and growth.

All Posts
The Local Luminary
The Local Luminary

The Local Luminary is your dedicated guide to uncovering the stories, strategies, and successes of standout local businesses. With a passion for community growth and a knack for highlighting what makes businesses thrive, The Local Luminary connects you with actionable insights to boost your own business visibility and growth.

All Posts
Search
Categories
Boost Your Business with Free Local Marketing Tools!

Looking to unlock the secrets to dominating local searches and boosting your business? Get instant access to free tools that drive results:

~ SEO – A step-by-step SEO Fix-It E-book to rank higher on Google.

~ Podcast – A custom podcast showcasing your unique growth potential. Yes, its real and its free!

~ Social Media – An E-book packed with ideas and checklists.

Click the button below to grab your free resources and discover how to rank #1 in your local market. Don’t miss out—your business’s transformation starts here!

Social Media

HAVE ANY QUESTION?