Fun

News Feed - 2023-11-03 08:11:52

Arijit Sarkar12 hours agoApple MacOS malware targets crypto community and engineersThe social engineering attacks trick community members into downloading a malicious ZIP archive named “Cross-platform Bridges.zip” — imitating an arbitrage bot designed for automated profit generation.4678 Total views40 Total sharesListen to article 0:00NewsJoin us on social networksA new malware discovered on Apple’s macOS — tied to the North Korean hacking group Lazarus — has reportedly targeted blockchain engineers of a cryptocurrency exchange platform.


The macOS malware “KandyKorn” is a stealthy backdoor capable of data retrieval, directory listing, file upload/download, secure deletion, process termination and command execution, according to an analysis by Elastic Security Labs.MacOS malware (REF7001) execution flow. Source: elastic.co


The above flowchart explains the steps taken by the malware to infect and hijack users’ computers. Initially, the attackers spread Python-based modules via Discord channels by impersonating community members.


The social engineering attacks trick community members into downloading a malicious ZIP archive named “Cross-platform Bridges.zip” — imitating an arbitrage bot designed for automated profit generation. However, the file imports 13 malicious modules that work together to steal and manipulate information. The report read:“We observed the threat actor adopting a technique we have not previously seen them use to achieve persistence on macOS, known as execution flow hijacking.”


The cryptocurrency sector remains a primary target for Lazarus, primarily motivated by financial gain rather than espionage, their other main operational focus.


The existence of KandyKorn underscores that macOS is well within Lazarus’ targeting range, showcasing the threat group’s remarkable ability to craft sophisticated and inconspicuous malware tailored for Apple computers.


Related:Onyx Protocol exploiter begins siphoning $2.1M loot on Tornado Cash


A recent exploit on Unibot, a popular Telegram bot used to snipe trades on the decentralized exchange Uniswap, crashed the token’s price by 40% in one hour..@TeamUnibot seems exploited, the exploiter transfers memecooins from #unibot users and is exchanging them for the $ETH right now.

The current exploit size is ~$560K

Exploiter address:https://t.co/ysyTmgUAit pic.twitter.com/MF85Fdk892— Scopescan ( . ) (@0xScopescan) October 31, 2023


Blockchain analytics firm Scopescan alerted Unibot users about an ongoing hack, which was later confirmed by an official source:“We experienced a token approval exploit from our new router and have paused our router to contain the issue.”


Unibot committed to compensating all users who lost funds due to the contract exploit.


Magazine:Slumdog billionaire 2: ‘Top 10… brings no satisfaction’ says Polygon’s Sandeep Nailwal# Blockchain# Apple# Business# Software# Hackers# North Korea# HacksAdd reactionAdd reactionRead moreCrypto horrors: Tales of lost Bitcoin walletsHelp or hindrance: Is Web3 really improving mainstream industry and products?Crypto thief steals $4.4M in a day as toll rises from LastPass breach

News Feed

Bitcoin Miner Greenidge Seeks to Raise $22.8 Million in Class A Common Stock Proposal
Bitcoin Miner Greenidge Seeks to Raise $22.8 Million in Class A Common Stock Proposal The bitcoin mining operation Greenidge Generation is seeking to raise roughly $22.8 million, a
Roaring Kitty swipes 6.6% of Chewy, clarifies he is ‘Not a Cat’
Josh O"Sullivan12 hours agoRoaring Kitty swipes 6.6% of Chewy, clarifies he is ‘Not a Cat’Keith Gill, known for his role in the GameStop saga, surprises the market with a significant stake in Chewy.2892 Total views11
Rakesh Upadhyay3 hours agoPrice analysis 8/30: BTC, ETH, BNB, XRP, ADA, DOGE, SOL, TON, DOT, MATICBitcoin and altcoins are struggling to hold the gains accrued earlier this week, a potential sign that the price breakout
Croatian Post Launches Crypto Exchange Service at 55 Branches
Croatian Post Launches Crypto Exchange Service at 55 Branches Croatian Post, the biggest provider of postal services in the Republic of Croatia, is now offering a cryptocurrency
Arijit Sarkar28 minutes agoCBDCs offer faster settlements: Citi survey of global securities firmsThe year-on-year growing support CBDCs is supported by ongoing domestic pilots and cross-border initiatives in various juri
FTC Commissioner Cites Libra in Support of Fed’s Real-Time Payment System
The Libra cryptocurrency project should be sufficient motivation for the Federal Reserve launch a real-time payments system, a senior government official wrote Thursday. Federal Tra
CoinFLEX Announces Its Major Milestones of 2021
CoinFLEX Announces Its Major Milestones of 2021 press release PRESS RELEASE. Since early August, CoinFLEX has seen a tremendous increase in trading activity, climbing to a staggerin
Indian Bank Blocks Use of RBI’s Remittance System for Crypto While Government Delays Bill
Indian Bank Blocks Use of RBI"s Remittance System for Crypto While Government Delays Bill Major Indian bank ICICI has asked customers not to use the Reserve Bank
Alice Ivey9 hours agoWhat is the International Monetary Fund, and how does it work?Explore the IMF’s objectives, governance structure and key functions in promoting global financial stability.418 Total viewsListen to a
Joe Biden drops out of United States presidential race
Ciaran Lyons5 hours agoJoe Biden drops out of United States presidential raceUnited States President Joe Biden has announced he will bow out of the 2024 presidential election.8550 Total views8 Total sharesListen to artic
Revoland Holding IDO on EverStart
Revoland Holding IDO on EverStart press release PRESS RELEASE.EverStart, a DAO-controlled multi-chain launchpad built on theEverscale blockchain networkandRevoland, a blockchain-bas
How Often Are Top Privacy Coins and Mixers Actually Used? – A Look at XMR, DASH, and ZEC
How Often Are Top Privacy Coins and Mixers Actually Used? - A Look at XMR, DASH, and ZEC As Bitcoin and crypto help everyday individuals to regain control over their money, and m