Monday | 7 October 2024 | Reg No- 06
বাংলা
   
Monday | 7 October 2024 | Epaper
BREAKING: Four die, 1225 patients hospitalised with dengue      105 children killed in mass uprising      Saber Hossain Chowdhury arrested      50,000 people marooned as over 100 villages flooded in Netrakona      Preliminary list of 735 martyrs killed in July-Aug mass uprising published      Mahmudur Rahman demands banning Chhatra League in a week      Israeli strike on mosque in Gaza kills 26      

Kaspersky uncovers Russian-speaking online cybercriminals

Published : Monday, 9 September, 2024 at 12:00 AM  Count : 128
Kaspersky has detected an online fraud campaign aimed at stealing cryptocurrency and sensitive information by exploiting popular topics such as web3, crypto, AI, online gaming, and beyond. 

Targeting individuals worldwide, the campaign is believed to be orchestrated by Russian-speaking cybercriminals and spreads info-stealing and clipper malware, says a press release.

Kaspersky's Global Emergency Response Team (GERT) has uncovered a fraud campaign targeting Windows and macOS users, aiming to steal cryptocurrency and personal data. 

The attackers lure victims through phishing websites mimicking legitimate services, such as crypto platforms, online games, and AI translators. 

These sites trick users into giving up sensitive information like crypto-wallet keys or downloading malware, allowing the attackers to drain funds or steal credentials.

The campaign, dubbed "Tusk" by Kaspersky, links to Russian-speaking threat actors due to code containing the word "Mammoth" (rus. "??????"), slang for "victim." Info-stealers like Danabot and Stealc, as well as clipboard-monitoring clippers, are being spread to harvest sensitive data, particularly targeting crypto-wallet addresses.

"The correlation between different parts of this campaign and their shared infrastructure suggests a well-organized operation, possibly linked to a single actor or group with specific financial motives," says Ayman Shaaban, Head of Incident Response Unit, Global Emergency Response Team, Kaspersky. 

"In addition to the three sub-campaigns targeting crypto, AI, and gaming topics, our Threat Intelligence Portal has helped to identify infrastructure for 16 other topics - either older, retired sub-campaigns or new ones not yet launched. 

This demonstrates the threat actor's ability to swiftly adapt to trending topics and deploy new malicious operations in response.

 It underscores the critical need for robust security solutions and enhanced cyber literacy to protect against evolving threats."

Kaspersky recommends using comprehensive security solutions like Kaspersky Premium, checking for compromised credentials via their Digital Footprint Intelligence, and investing in cybersecurity training, and use a Kaspersky Password Manager to mitigate such threats. 

The full technical analysis will be available on Securelist, with further insights to be discussed at Kaspersky's Security Analyst Summit (SAS) in Bali this October.



LATEST NEWS
MOST READ
Also read
Editor : Iqbal Sobhan Chowdhury
Published by the Editor on behalf of the Observer Ltd. from Globe Printers, 24/A, New Eskaton Road, Ramna, Dhaka.
Editorial, News and Commercial Offices : Aziz Bhaban (2nd floor), 93, Motijheel C/A, Dhaka-1000.
Phone: PABX- 41053001-06; Online: 41053014; Advertisement: 41053012.
E-mail: info©dailyobserverbd.com, news©dailyobserverbd.com, advertisement©dailyobserverbd.com, For Online Edition: mailobserverbd©gmail.com
🔝