KryptoCibule: The Cryptostealing Malware

ESET antivirus researchers have announced the discovery of an unknown trojan malware family that spreads through malicious torrents and uses multiple methods to extract as many cryptocurrencies from its victims as possible while remaining undetected.

- Advertisement -

ESET named the threat KryptoCibule and, according to its telemetry, the malware appears to target mainly users in the Czech Republic and Slovakia.

Triple Threat

This malware poses a triple threat to cryptocurrencies. It uses the victim’s resources to mine currencies, attempts to infiltrate transactions by replacing wallet addresses on the clipboard, extracts files related to cryptocurrencies, and develops multiple techniques to remain undetected. KryptoCibule makes extensive use of the Tor network and BitTorrent protocol in its communication infrastructure.

How KryptoCibule malware works
How KryptoCibule works. Source: WeLiveSecurity

ESET has identified many versions of KryptoCibule, allowing them to study its evolution from December 2018 to the present day. The malware remains active, new features were added during its lifetime and is under constant development.

Victims Located in Czech Republic and Slovakia

Most of the victims are located in the Czech Republic and Slovakia, and this reflects the user base of the site where the infected torrents are located. Almost all malicious torrents were available on uloz.to, a popular file-sharing site in both countries.

- Advertisement -

In addition, KryptoCibule specifically checks for the presence of ESET, Avast and AVG security products.

More technical details about KryptoCibule can be read in the relevant blogpost on WeLiveSecurity.

Previous Articles:

- Advertisement -

Latest News

Ethereum Breaks Support; Bitcoin Fades Altcoins Mostly Muted

Ethereum fell toward $2,900 after losing support at $3,170–$3,200, pushing heavy liquidations.Total market liquidations...

Bitcoin Nets 69,000 BTC in Realized Losses; Market Cautious.

Bitcoin holders realized net losses totaling about 69,000 BTC over a recent 30-day stretch.Analysts...

SEC’s Paul Atkins, CFTC’s Michael Selig to Discuss US Crypto

SEC Chair Paul Atkins and CFTC Chair Michael Selig will hold an event on...

Tesla market share falls to 9.9% in California; Toyota grows

Tesla registrations in California fell to 179,656 in 2025, down from 202,865 the prior...

Capital One to Buy Brex for $5.15B Boosting Business Crypto.

Capital One agreed to buy San Francisco-based Brex in a $5.15 billion stock-and-cash deal.The...
- Advertisement -

Must Read

9 Best Books On Ethereum And Blockchain Technology

QUICK LINKSHow to Choose Your First Blockchain Book: A Simple Framework1. Define Your Goal: Are you looking to Build, Invest, or Understand?2. Assess Your...
🔥 #AD Get 20% OFF any new 12 month hosting plan from Hostinger. Click here!