Fun

News Feed - 2023-11-03 08:11:52

Arijit Sarkar12 hours agoApple MacOS malware targets crypto community and engineersThe social engineering attacks trick community members into downloading a malicious ZIP archive named “Cross-platform Bridges.zip” — imitating an arbitrage bot designed for automated profit generation.4678 Total views40 Total sharesListen to article 0:00NewsJoin us on social networksA new malware discovered on Apple’s macOS — tied to the North Korean hacking group Lazarus — has reportedly targeted blockchain engineers of a cryptocurrency exchange platform.


The macOS malware “KandyKorn” is a stealthy backdoor capable of data retrieval, directory listing, file upload/download, secure deletion, process termination and command execution, according to an analysis by Elastic Security Labs.MacOS malware (REF7001) execution flow. Source: elastic.co


The above flowchart explains the steps taken by the malware to infect and hijack users’ computers. Initially, the attackers spread Python-based modules via Discord channels by impersonating community members.


The social engineering attacks trick community members into downloading a malicious ZIP archive named “Cross-platform Bridges.zip” — imitating an arbitrage bot designed for automated profit generation. However, the file imports 13 malicious modules that work together to steal and manipulate information. The report read:“We observed the threat actor adopting a technique we have not previously seen them use to achieve persistence on macOS, known as execution flow hijacking.”


The cryptocurrency sector remains a primary target for Lazarus, primarily motivated by financial gain rather than espionage, their other main operational focus.


The existence of KandyKorn underscores that macOS is well within Lazarus’ targeting range, showcasing the threat group’s remarkable ability to craft sophisticated and inconspicuous malware tailored for Apple computers.


Related:Onyx Protocol exploiter begins siphoning $2.1M loot on Tornado Cash


A recent exploit on Unibot, a popular Telegram bot used to snipe trades on the decentralized exchange Uniswap, crashed the token’s price by 40% in one hour..@TeamUnibot seems exploited, the exploiter transfers memecooins from #unibot users and is exchanging them for the $ETH right now.

The current exploit size is ~$560K

Exploiter address:https://t.co/ysyTmgUAit pic.twitter.com/MF85Fdk892— Scopescan ( . ) (@0xScopescan) October 31, 2023


Blockchain analytics firm Scopescan alerted Unibot users about an ongoing hack, which was later confirmed by an official source:“We experienced a token approval exploit from our new router and have paused our router to contain the issue.”


Unibot committed to compensating all users who lost funds due to the contract exploit.


Magazine:Slumdog billionaire 2: ‘Top 10… brings no satisfaction’ says Polygon’s Sandeep Nailwal# Blockchain# Apple# Business# Software# Hackers# North Korea# HacksAdd reactionAdd reactionRead moreCrypto horrors: Tales of lost Bitcoin walletsHelp or hindrance: Is Web3 really improving mainstream industry and products?Crypto thief steals $4.4M in a day as toll rises from LastPass breach

News Feed

Crypto Community Gets Prepping as Coronavirus Spreads
Crypto Community Gets Prepping as Coronavirus Spreads Crypto Twitter (CT) might not be the first place you’d think to look for pandemic survival strategies, but in recent w
Bitcoin speculators hodl 2.8M BTC in ‘worst performing’ price cycle
William Suberg21 minutes agoBitcoin speculators hodl 2.8M BTC in ‘worst performing’ price cycleBitcoin unrealized losses mount, but unlike previous market cycles, BTC hodlers underwater are keeping a lid on their emo
Market Expert Reveals Why XRP Price At $1,000 Is Not A Possibility
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Bitcoin.com to Give Away $25,000 In “December to Remember”
Bitcoin.com to Give Away $25,000 In “December to Remember” In light of the holiday season, and to celebrate a fantastic year for economic freedom enhancing technologies like Bi
Spellfire: Crypto Project Older Than Crypto Starts a ‘10 Days Growth’ Sprint
Spellfire: Crypto Project Older Than Crypto Starts a ‘10 Days Growth’ Sprint sponsored Spellfire has packed 30 years of history into an amazing experience and combined it with t
Swiss State Secretariat Helps Blockchain Incubator Firm Set Up Base in South Africa
Swiss State Secretariat Helps Blockchain Incubator Firm Set Up Base in South Africa Switzerland’s State Secretariat for Economic Affairs (SECO) is reported
UK Parliamentary Group Seeks Views of Crypto Industry Players
UK Parliamentary Group Seeks Views of Crypto Industry Players A parliamentary group in the United Kingdom, the Crypto and Digital Assets All Party Parliamentary Group (APPG), recen
Biggest Movers: AVAX Nears 2-Month High, FIL up 15% Despite Weekend Volatility
Biggest Movers: AVAX Nears 2-Month High, FIL up 15% Despite Weekend Volatility Avalanche was trading close to a two-month high on Saturday, despite markets mostly consolidating. An
Savannah Fortis13 hours agoCIA to build its own ChatGPT-style AI bot for investigations: ReportThe CIA says it is creating its own ChatGPT AI tool to conduct open-source investigations by analyzing public information.135
Binance ends support for Bitcoin Ordinals
Ana Paula Pereira4 hours agoBinance ends support for Bitcoin OrdinalsBinance NFT marketplace will cease supporting trades and deposits of Bitcoin Ordinals on April 18.1479 Total views5 Total sharesListen to article 0:00N
South African Central Bank Governor: Regulators and Policymakers Must Be Involved in Shaping Potential Move to DLT Markets
South African Central Bank Governor: Regulators and Policymakers Must Be Involved in Shaping Potential Move to DLT Markets The head of the South African central bank has insisted t
Advocacy groups file amicus briefs encouraging SEC to write crypto rules
Turner Wright2 hours agoAdvocacy groups file amicus briefs encouraging SEC to write crypto rulesThe Crypto Council for Innovation, Satoshi Action Fund, Texas Blockchain Council, Paradigm, Lejilex and the U.S. Chamber of