Fun

News Feed - 2023-08-25 01:08:36

Martin Young4 hours agoWinRAR patches zero-day bug that targeted stock and crypto tradersAccording to cybersecurity firm Group-IB, weaponized ZIP file archives were being shared on crypto trading forums, with each one containing a nasty surprise.999 Total views18 Total sharesListen to article 0:00NewsJoin us on social networksThe developers behind file compression software WinRAR have patched a zero-day vulnerability that allowed hackers to install malware onto unsuspecting victims" computers, enabling them to hack into their crypto and stock trading accounts.


On Aug. 23, Singapore-based cybersecurity firm Group-IB reported a zero-day vulnerability in the processing of the ZIP file format by WinRAR.


The zero-day vulnerability tracked as CVE-2023-38831 was exploited for approximately four months, allowing hackers to install malware when a victim clicked on files in an archive. The malware would then allow hackers to breach online crypto and stock trading accounts, according to the report.


Using the exploit, the threat actors were able to create malicious RAR and ZIP archives that displayed seemingly innocent files such as JPG images or PDF text documents. These weaponized ZIP archives were then distributed on trading forums targeting crypto traders, offering strategies such as “best Personal Strategy to trade with Bitcoin.”“Once extracted and executed, the malware allows threat actors to withdraw money from broker accounts. This vulnerability has been exploited since April 2023.”


The report confirmed that the malicious archives found their way onto at least eight public trading forums infecting at least 130 devices, however, the victim"s financial losses were unknown.WinRar exploit infection chain. Source: Group-IB


On execution, the script launches a self-extracting (SFX) archive that infects the target computer with various malware strains, such as the DarkMe, GuLoader and Remcos RAT.


These provide the attacker with remote access privileges on the infected computer. DarkMe malware has previously been used in crypto and financially motivated attacks.


The researchers notified RARLABS which patched the zero-day vulnerability in WinRAR version 6.23, released on Aug. 2.


Related:Crypto investors under attack by new malware, reveals Cisco Talos


In August, smartphone giant BlackBerry identified several malware families that actively aimed to hijack computers to mine or steal cryptocurrencies.


The same month also revealed a newly discovered remote access tool called HVNC (Hidden Virtual Network Computer) that can enable hackers to compromise Apple operating systems was found on sale on the dark web.


Collect this article as an NFTto preserve this moment in history and show your support for independent journalism in the crypto space.


Magazine:Should crypto projects ever negotiate with hackers? Probably# Business# Malware# Hackers# Cybercrime# CybersecurityAdd reactionAdd reactionRead moreHow to send and receive payments on the Lightning NetworkOpinion: Why did Bitget seize more than $200,000 of my money?The future of BTC mining and the Bitcoin halving

News Feed

Quantum-Resistant Token, Crown Sovereign (CSOV) Will Be Listed on Bitcoin.com Exchange
Quantum-Resistant Token, Crown Sovereign (CSOV) Will Be Listed on Bitcoin.com Exchange press release PRESS RELEASE. Crown Sterling’s Crown Sovereign token (
Elon Musk Says Bitcoin Suitable for Store of Value, Dogecoin for Transactions as Time Names Him Person of the Year
Elon Musk Says Bitcoin Suitable for Store of Value, Dogecoin for Transactions as Time Names Him Person of the Year Tesla CEO Elon Musk, who has been named Time Magazine’s Pe
Bitcoin Rise in First Month of 2023 Moves Crypto Fear Index From ‘Extreme Fear’ to ‘Greed’
Bitcoin Rise in First Month of 2023 Moves Crypto Fear Index From "Extreme Fear" to "Greed" Last month, statistics showed that the Crypto Fear and Greed Index (CFGI) had a score of
Ex-Binance CEO Changpeng Zhao sentenced to four months in prison
Turner Wright4 hours agoEx-Binance CEO Changpeng Zhao sentenced to four months in prisonChangpeng Zhao, also known as CZ, pleaded guilty in November to violating U.S. money laundering laws and had been free to travel in
Shiba Inu’s Shibarium Marks 1 Billion Transactions Milestone, But Why Is SHIB Price Still Struggling?
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Japanese Firms SBI and GMO Join the Digital Gold Rush in Texas
Japanese Firms SBI and GMO Join the Digital Gold Rush in Texas The city of Rockdale, Texas is attracting attention again, similar to the interest the region saw back in the fifti
FTX class action lawyers move to block Sullivan & Cromwell’s dismissal motion
Ana Paula Pereira7 hours agoFTX class action lawyers move to block Sullivan & Cromwell’s dismissal motionLawyers for FTX class action are challenging Sullivan & Cromwell’s dismissal request, claiming the law
British Fintech Revolut Granted Crypto License in Cyprus
British Fintech Revolut Granted Crypto License in Cyprus U.K.-based digital bank Revolut has been authorized by Cyprus to provide cryptocurrency services to millions of customers o
Payments Company Square Rebrands to ‘Block Inc.,’ Crypto Service Will Be Called ‘Spiral’
Payments Company Square Rebrands to "Block Inc.," Crypto Service Will Be Called "Spiral" Following Jack Dorsey’s resignation announcement on Monday, two days later Dorsey&#x
New York Attorney General Files Lawsuit Against Kucoin and Declares Ethereum a Security
New York Attorney General Files Lawsuit Against Kucoin and Declares Ethereum a Security On March 9, 2023, New York attorney general Letitia James announced that her office had once
Report: Afghans Use Crypto to Curb Taliban’s Influence on Their Financial Well-Being
Report: Afghans Use Crypto to Curb Taliban"s Influence on Their Financial Well-Being Afghan residents are reportedly acquiring digital assets that they use to preserve their saving
Tokenized Bitcoin in Circulation Nears a Half Million BTC, Bitcoin-Pegged Token Value Exceeds $21 Billion
Tokenized Bitcoin in Circulation Nears a Half Million BTC, Bitcoin-Pegged Token Value Exceeds $21 Billion According to data recorded on December 28, there’s approximately 43