Mmastodon TechnologyCybersecurity first seen 10 h ago, last 10 h ago, peak #7
Info stealer drains $100K in crypto from 350+ victims
Original: 💸 $100K in crypto drained. 350+ victims. The withdrawal confirmation email rewritten in their webmail so nothing looks w
A malware strain called Underground is being linked to the theft of roughly $100,000 in cryptocurrency from more than 350 victims. The malware launches a victim's own signed-in Chrome or Edge browser, fakes a Binance two-factor authentication prompt to capture codes, and drains accounts. It also edits the withdrawal confirmation email inside the victim's webmail so nothing looks wrong, and uses a clipboard clipper to swap wallet addresses during transactions.
Why now: The sophisticated anti-detection trick of rewriting confirmation emails in webmail makes this info stealer notably dangerous to crypto holders.
Underground malwareBinanceChromeEdge
Evidence
- 💸 $100K in crypto drained. 350+ victims. The withdrawal confirmation email rewritten in their webmail so nothing looks wrong. 🕵️ "Underground" launches your own signed-in Chrome/Edge, fakes a Binance 2FA prompt, and empties the account. A clipboard clipper swaps wallet… · ppasseri@infosec.exchange · 2
API: https://socialmediatrends-api.osmike.com/v1/trends/620906