KryptoCibule: The Cryptostealing Malware

ESET antivirus researchers have announced the discovery of an unknown trojan malware family that spreads through malicious torrents and uses multiple methods to extract as many cryptocurrencies from its victims as possible while remaining undetected.

- Advertisement -

ESET named the threat KryptoCibule and, according to its telemetry, the malware appears to target mainly users in the Czech Republic and Slovakia.

Triple Threat

This malware poses a triple threat to cryptocurrencies. It uses the victim’s resources to mine currencies, attempts to infiltrate transactions by replacing wallet addresses on the clipboard, extracts files related to cryptocurrencies, and develops multiple techniques to remain undetected. KryptoCibule makes extensive use of the Tor network and BitTorrent protocol in its communication infrastructure.

How KryptoCibule malware works
How KryptoCibule works. Source: WeLiveSecurity

ESET has identified many versions of KryptoCibule, allowing them to study its evolution from December 2018 to the present day. The malware remains active, new features were added during its lifetime and is under constant development.

Victims Located in Czech Republic and Slovakia

Most of the victims are located in the Czech Republic and Slovakia, and this reflects the user base of the site where the infected torrents are located. Almost all malicious torrents were available on uloz.to, a popular file-sharing site in both countries.

- Advertisement -

In addition, KryptoCibule specifically checks for the presence of ESET, Avast and AVG security products.

More technical details about KryptoCibule can be read in the relevant blogpost on WeLiveSecurity.

Previous Articles:

- Advertisement -

Latest News

Copper Surges to Record High, Bank of America Predicts $11,000 Target

Copper prices have reached a record high, rising nearly 20% year-to-date. Bank of America forecasts...

Shopify, Etsy Stocks Surge on OpenAI Deal Despite Analyst Caution

Shopify and Etsy shares rose 6.2% and 15.8% after announcing an e-commerce partnership with...

Solana ETF Approval Seen as Imminent After S-1 Amendment Filing

The U.S. Securities and Exchange Commission (SEC) has made the 19b-4 review timeline irrelevant...

Wisconsin Bill Proposes Crypto Mining, Staking License Exemptions

Wisconsin lawmakers propose a bill to exempt individuals and businesses from money transmitter licenses...

Dormant Bitcoin Whale Moves $44M After 12 Years, Spooking Market

An inactive Bitcoin wallet holding 400 BTC, valued at over $44 million, moved funds...
- Advertisement -

Must Read

10 Best Bitcoin Debit Cards

You are reading this post because you want to get your hands on the best bitcoin debit card - right? Well, we got you covered. We...