Microsoft Warns of StilachiRAT Malware Targeting Crypto Wallets Through Chrome

Microsoft Discovers StilachiRAT Malware Targeting Cryptocurrency Wallets Through Chrome

- Advertisement -
  • Microsoft has identified a new Malware threat called StilachiRAT that targets cryptocurrency wallets through Google Chrome.
  • Popular wallets at risk include MetaMask, Coinbase Wallet, Phantom, OKX Wallet, and BNB Chain Wallet.
  • The malware has sophisticated credential-stealing capabilities but isn’t yet widespread, according to Microsoft researchers.

Security researchers at Microsoft have issued an alert about a newly discovered malware strain called StilachiRAT, capable of compromising cryptocurrency wallets by stealing sensitive information from Google Chrome browsers. The malware specifically targets credential data that could give attackers access to users’ digital assets across multiple popular wallet platforms.

The sophisticated threat can extract usernames, passwords, and other authentication details stored in Chrome, potentially compromising funds held in several major cryptocurrency wallets. Security experts have identified MetaMask, Coinbase Wallet, Phantom, OKX Wallet, and BNB Chain Wallet among the platforms at risk from this attack vector.

Microsoft’s incident response team published details in a blog post explaining how the malware operates: “Analysis of the StilachiRAT’s WWStartupCtrl64.dll module that contains the RAT capabilities revealed the use of various methods to steal information from the target system, such as credentials stored in the browser, digital wallet information, data stored in the clipboard, as well as system information.”

Researchers emphasized the importance of preventative measures, noting it’s “critical to implement security hardening measures to prevent the initial compromise.” While the investigation continues, Microsoft has not yet been able to attribute the malware to any specific threat actor or geographic origin.

The company also indicated that StilachiRAT does not currently show widespread distribution patterns. “Microsoft has not yet attributed StilachiRAT to a specific threat actor or geolocation. Based on Microsoft’s current visibility, the malware does not exhibit widespread distribution at this time,” their researchers noted.

Despite its currently limited spread, Microsoft chose to publish their findings as part of ongoing security transparency efforts. “However, due to its stealth capabilities and the rapid changes within the malware ecosystem, we are sharing these findings as part of our ongoing efforts to monitor, analyze, and report on the evolving threat landscape,” the security team added.

The emergence of StilachiRAT follows a broader trend of increasingly sophisticated attacks targeting cryptocurrency holders. The rising valuation of digital assets has attracted more criminal attention to the sector, with February seeing a massive $1.5 billion breach of the Bybit exchange reportedly carried out by the North Korea-affiliated Lazarus Group.

For cryptocurrency users, this discovery underscores the importance of maintaining robust security practices, particularly when using browser-based wallet extensions that may be vulnerable to credential theft.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -
- Advertisement -
- Advertisement -

Latest

Swiss National Bank Explores Private Tokenized Currency Backed by Central Bank Funds

The Swiss National Bank (SNB) is exploring three options for DLT settlement, including its pilot wholesale CBDC, tokenized private money, and connectivity between traditional...

Analyst Warns XRP Could Fall to $1.25 if $2 Support Level Breaks

Analyst Ali Martinez warns of a bearish head-and-shoulders pattern forming on XRP's weekly chart, with $2 identified as a crucial support level.If XRP breaks...

Cardano Development Report: 1.3 Million Delegated Wallets and $1.5M Investment from Hoskinson Family Office

Cardano ecosystem shows robust growth with 1.327 million delegated wallets and 107.52 million on-chain transactions as of March 2025.Strategic investments continue with Hoskinson Family...

Nawfal’s Team Claims Account Was Compromised After Promoting Fake Adin Ross Token

Mario Nawfal's crypto account promoted a fake Adin Ross token (ROSS) twice before claiming the account was compromised by a team member.Cryptocurrency community members...

SEC to Drop Appeal in Four-Year Legal Battle Against Ripple Labs

Ripple CEO Brad Garlinghouse announces SEC will drop its appeal in the four-year-long lawsuit against the company.XRP price surged up to 14% following the...

XRP Surges 10% as Ripple CEO Announces SEC to Drop Appeal in Landmark Case

XRP surged 10% as Ripple CEO Brad Garlinghouse announced the SEC will drop its appeal in their long-standing legal battle.The SEC lawsuit, filed in...

SEC drops appeal against Ripple, ending multi-year enforcement action

The SEC has decided to drop its appeal in the long-running Ripple case, marking a significant victory for the cryptocurrency company.Ripple CEO Brad Garlinghouse...

Goldman Sachs, Moody’s, and Hong Kong FMI Join Global Synchronizer Foundation for Blockchain Collaboration

Goldman Sachs, Moody's and Hong Kong FMI Services have joined the Global Synchronizer Foundation, expanding its membership to over 30 institutions.The Canton Network aims...
- Advertisement -

Must Read

Top 5 Testing Tools For Blockchain Applications in 2022

Blockchain apps have been adopted popularly by some prominent industries due to its being a decentralized-designed technology. Furthermore, these apps eliminate the risks that...

Read Next
Recommended to you