First bitcoin crashes and then more bad news is piled onto cryptocurrency investors
Bitcoin went into meltdown starting September 24 when the BTC price dropped by more than 10% in what some highly-respected commentators referred to as a bitcoin crash. The bad news for bitcoin continued through the week, with the price continuing to fluctuate around, and below, $8,000 (6,500). Now bitcoin buyers have been issued a warning concerning another threat to their cryptocurrency investment; an "active and ongoing" threat campaign that steals bitcoin wallets.
Security researchers from Juniper Threat Labs have reported how spyware delivered by a Trojan and using the encrypted Telegram messaging platform for data exfiltration, targets cryptocurrency wallets.
The off-the-shelf malware, identified as "Masad Clipper and Stealer," is currently being distributed in black market forums online. The malware starts off free, but the prices ramp up to $85 (69) for the versions with the most functionality. Juniper researchers discovered a Telegram group, with more than 300 members, where potential buyers can learn more and, it is thought, also get tech support. The Telegram messaging service, with more than 200 million users worldwide, is also being deployed as a command and control (C2) channel for the malware to provide anonymity to the operators. I say operators for a good reason: Masad is sold as an off-the-shelf package and therefore being used by multiple criminal actors. The Juniper researchers have found 338 different Telegram C2 bot IDs to date, which ties in nicely with the Telegram Masad support group membership.
Juniper researchers have said that the main route to infection being used by those behind the Masad attacks has been to pose as a legitimate application, or sometimes bundling the malware executables into third-party tools, to fool the unwary victim. These downloads are advertised, and linked to, in user forums, third party download sites and file-sharing sites. Just some of the software and tools that Masad is known to currently be masquerading as include a Fortnite game aimbot, fake updates for Samsung Galaxy smartphones and the CCleaner system clean up application. The full list can be found in the Juniper research report.
The malware is, at heart, simple spyware: it looks for sensitive data through the web browser including credit card details, passwords, autofill fields, cookies, installed software and processes, desktop files and system information.
Oh yes, and cryptocurrency wallets.
One function of the Masad malware is to interrogate the system clipboard looking for data that matches the configuration of specific cryptocurrency wallets. If a match is detected, then Masad replaces that clipboard data, that wallet, with a wallet belonging to the attacker which is coded into the malware binary. As well as bitcoin, Masad will look for almost every other cryptocurrency; these are opportunist cybercriminals and they will not overlook any chance to make a quick profit.
The mitigation advice is not to download software, tools or services through anything other than an official app store or manufacturer site. "In order to protect your organization, make sure that you have a next-generation firewall (NGFW) with Advanced Threat Protection," Juniper researchers said, "NGFWs have the ability to identify the Telegram protocol and block it, if there is no legitimate business use, while Advanced Threat Protection products offer other methods to detect and counteract this malware."
Here's Where $800 Of Bitcoin Buys You $10,000 Cash
How To Make $1 Million From Hacking: Meet Six Hacker Millionaires
Microsoft Confirms It's Fighting Windows Zombie Attack
Critical Windows Security Warning Issued For Windows 10, 8.1 And 7 Users
Russian Spies 'Breached FBI Encrypted Communications'
View post:
Post-Crash Bitcoin Warning As Wallets Targeted In Active And Ongoing Hack Attack - Forbes
- Google removes malware Android apps used to secretly mine bitcoin - April 26th, 2014 [April 26th, 2014]
- Bitcoin exchange MtGox liquidated - April 26th, 2014 [April 26th, 2014]
- Bitcoin Wannabe Litecoin Emerges as Low-Price Challenger - April 26th, 2014 [April 26th, 2014]
- The Worlds First Bitcoin Debit Card Is Almost Here - April 26th, 2014 [April 26th, 2014]
- How does Bitcoin work? - Bitcoin - Open source P2P money - April 26th, 2014 [April 26th, 2014]
- Bitcoin - Wikipedia, the free encyclopedia - April 26th, 2014 [April 26th, 2014]
- The Bitcoin Group #27 - China Bans Bitcoin Again - Politics - Dark Market - Bitcoin VC - Video - April 26th, 2014 [April 26th, 2014]
- Edan Yago - Free Market Bitcoin regulation and Honduras free trade zones.mp4 - Video - April 26th, 2014 [April 26th, 2014]
- Bitcoin vs. Political Power: The Cryptocurrency Revolution - Stefan Molyneux at TNW Conference - Video - April 26th, 2014 [April 26th, 2014]
- Video: Roundup of This Week's Bitcoin News 25th April 2014 - Video - April 26th, 2014 [April 26th, 2014]
- Bitcoin Fredagsbar med Torben Mark Pedersen - Video - April 26th, 2014 [April 26th, 2014]
- Bitcoin and the Internet of Money - Video - April 26th, 2014 [April 26th, 2014]
- Bitcoin for Dummies - Video - April 26th, 2014 [April 26th, 2014]
- Bitcoin runner-up Litecoin emerges as low-price challenger - April 27th, 2014 [April 27th, 2014]
- Bitcoin or Gold? Squawk Walk Taipei- Squawkonomics - Video - April 27th, 2014 [April 27th, 2014]
- Bitcoin Miner AntMiner S1 180 - 200 GH/s Nu in de Aanbieding! - Video - April 27th, 2014 [April 27th, 2014]
- New Bitcoin Documentary: Boom or Bust - Video - April 27th, 2014 [April 27th, 2014]
- Bitcoin May v0.9.1 GitHub Source Code Development Visualization - Video - April 27th, 2014 [April 27th, 2014]
- Atomic-Trade Bitcoin Exchange. AML, BSA, FinCEN compliant - Video - April 27th, 2014 [April 27th, 2014]
- China Bans Bitcoin Again -- Bitcoin the Movie -- Startup for Startups Raises 2,000 BTC - Video - April 27th, 2014 [April 27th, 2014]
- 4/24/14 - Xapo Debit Card, Russia's 1st Bitcoin Conference, Silk Road 2.0 - Video - April 27th, 2014 [April 27th, 2014]
- What is Bitcoin? - Video - April 27th, 2014 [April 27th, 2014]
- David Andolfatto, How Does Bitcoin Work? - Video - April 27th, 2014 [April 27th, 2014]
- Australian Bitcoin traders hit by crash - April 28th, 2014 [April 28th, 2014]
- Bitcoin traders hit by Mt.Gox crash - April 28th, 2014 [April 28th, 2014]
- Market Extra: Bitcoin venture capital money hasnt kept up with buzz - April 28th, 2014 [April 28th, 2014]
- Bitcoin price slips as China steps up regulation - April 28th, 2014 [April 28th, 2014]
- Bitcoin price slips on China regulation - April 28th, 2014 [April 28th, 2014]
- Win .33 Bitcoin ($150 or so, Depending on BTC value) - Meme game for May 1st - Take My Bitcoins - Video - April 28th, 2014 [April 28th, 2014]
- Ron Paul on Bitcoin - Video - April 28th, 2014 [April 28th, 2014]
- btc.sx Bitcoin derivatives platform George Samman clip - Video - April 28th, 2014 [April 28th, 2014]
- 'The Rise And Rise Of Bitcoin' Filmmaker: 'There Is No Answer Yet' - April 29th, 2014 [April 29th, 2014]
- Bitcoin the movie: It just had to happen - April 29th, 2014 [April 29th, 2014]
- Bitcoin Vies with New Cryptocurrencies as Coin of the Cyber Realm - April 29th, 2014 [April 29th, 2014]
- The Bitcoin Meetup - BitcoinMKE Hosts Jeffrey Tucker - Video - April 29th, 2014 [April 29th, 2014]
- MIT Bitcoin Expo 2014 - Video - April 29th, 2014 [April 29th, 2014]
- Bitcoin Expo 2014: Fireside Chat with Dr Gavin Wood - Video - April 29th, 2014 [April 29th, 2014]
- Rise Bitcoin Singapore - Video - April 29th, 2014 [April 29th, 2014]
- Preview: Bitcoin Authenticator - 2FA for wallets - Video - April 29th, 2014 [April 29th, 2014]
- The Bitcoin Group #27 (Live) - China Bans Bitcoin Again - Politics - Dark Market - Bitcoin VC - Video - April 29th, 2014 [April 29th, 2014]
- 4/25/14 - More China uncertainty, Missourian bitcoin warning, BadLepricon malware - Video - April 29th, 2014 [April 29th, 2014]
- Money & Tech at The Rise And Rise Of Bitcoin Afterparty - Video - April 29th, 2014 [April 29th, 2014]
- New Bitcoin student club at MIT will promote the virtual currency - April 30th, 2014 [April 30th, 2014]
- 4/29/14 - MIT Bitcoin Project, Mt Gox revival plan, Mastercard lobbyists & Team Rubicon - Video - April 30th, 2014 [April 30th, 2014]
- BitCoin Dentist GoCoin Fox News Interview - Video - April 30th, 2014 [April 30th, 2014]
- Bitcoin Foundation Election Hiccups -- Pathetic Ohio Bans Bitcoins -- Dogecon SF 2014 - Video - April 30th, 2014 [April 30th, 2014]
- Bitcoin Slips to $420 as BTC China Halts Transactions - Video - April 30th, 2014 [April 30th, 2014]
- MultiSig Plus BitCoin Multi Coin Wallet looks like HUGE INVESTMENT potential! - Video - April 30th, 2014 [April 30th, 2014]
- Bitcoin: what happens when the miners pack up their gear? - May 1st, 2014 [May 1st, 2014]
- Dark Wallet Is About to Make Bitcoin Money Laundering Easier Than Ever - May 1st, 2014 [May 1st, 2014]
- Bitcoin Talk Show #7 -- Skype BitcoinTalkShow to Call in Live! 🙂 - Video - May 1st, 2014 [May 1st, 2014]
- Basic Bitcoin Bitches - Video - May 1st, 2014 [May 1st, 2014]
- Gold standard vs Fiat vs Bitcoin - Truthloader - Video - May 1st, 2014 [May 1st, 2014]
- How to Defund the System: Bitcoin vs. the Central Banksters - Video - May 1st, 2014 [May 1st, 2014]
- Bitcoin, Anarchy and Freedom with Roger Ver - Video - May 1st, 2014 [May 1st, 2014]
- MIT Goes Bitcoin-Wild - May 1st, 2014 [May 1st, 2014]
- Bitcoin Weekly 2014 April 30: Bloomberg adds Bitcoin to their market index, MIT to produce campus-wide bitcoin ... - May 1st, 2014 [May 1st, 2014]
- 'Dark Wallet' wants to make Bitcoin even harder to trace - May 1st, 2014 [May 1st, 2014]
- Bitcoin made simple (video animation) - Video - May 1st, 2014 [May 1st, 2014]
- Jon Matonis: Bitcoin - The future of commerce? - Video - May 1st, 2014 [May 1st, 2014]
- $100 in Bitcoin Going to Every MIT Undergrad - Video - May 1st, 2014 [May 1st, 2014]
- The Rise of Digital Currency - Video - May 1st, 2014 [May 1st, 2014]
- Money Goes Virtual: The Bitcoin Bourse - Video - May 2nd, 2014 [May 2nd, 2014]
- Bitcoin Lights with LIFX - Video - May 2nd, 2014 [May 2nd, 2014]
- Bitcoin: How We Got Here and Where We Are Going - May 3rd, 2014 [May 3rd, 2014]
- 5/1/14 - Larry Summers warns critics, Paym system & Bitcoin Center NYC roundtable - Video - May 3rd, 2014 [May 3rd, 2014]
- On est Connect S2 #07 1/2 : BitCoin et Musique sur Internet - Video - May 3rd, 2014 [May 3rd, 2014]
- MIT Undergrads To Receive $100 Worth Of Bitcoin This Fall - Video - May 3rd, 2014 [May 3rd, 2014]
- Why it only took ME less than 2 minutes to believe in Bitcoin - Video - May 3rd, 2014 [May 3rd, 2014]
- Bitcoin Basics and Regulation Thoughts from NH Liberty Forum - Bruce Fenton - Video - May 3rd, 2014 [May 3rd, 2014]
- PRIMER CAJERO DE BITCOIN EN BIT CENTER DE TIJUANA - Video - May 3rd, 2014 [May 3rd, 2014]
- Yelp adds Bitcoin acceptance to business listings - Video - May 3rd, 2014 [May 3rd, 2014]
- Bitcoin A Terrorist Threat? Counterterrorism Program Names Virtual Currencies As Area Of Interest - May 4th, 2014 [May 4th, 2014]
- How Does Bitcoin Works - Video - May 4th, 2014 [May 4th, 2014]
- 10 Things You Didn't Know About BitCoin - Video - May 4th, 2014 [May 4th, 2014]
- BITCOIN The Future of Money - Video - May 4th, 2014 [May 4th, 2014]
- Bitcoin Miner Review - Video - May 4th, 2014 [May 4th, 2014]
- The Bitcoin Group #28 (Live) - Yelp Lists Bitcoin - MIT Bitcoin $100 - Dark Wallet - Ohio Bans BTC - Video - May 4th, 2014 [May 4th, 2014]
- Bitcoin: Gary North is Mentally Deranged And Bitcoin Will Change Everything - Video - May 4th, 2014 [May 4th, 2014]
- Who is the Bitcoin Warlord? - Video - May 4th, 2014 [May 4th, 2014]