Trustwave Spiderlabs Researchers Warn of New Strain of Malware That Drains Crypto Funds

Share This Post

According to researchers at Trustwave Spiderlabs, a strain of malware known as Rilide is believed to be helping cybercriminals steal funds from cryptocurrency exchanges. Although the steps being taken to tackle this malware are likely to make life more difficult for cybercriminals, two researchers — Pawel Knapczyk and Wojciech Cieslak — said this alone may not be enough to “solve the issue entirely.”

Malicious Browser Extensions

Researchers at Trustwave Spiderlabs recently said they discovered a new strain of malware which clandestinely draws funds from crypto wallets. According to the researchers, the malware, known as Rilide, is thought to disguise itself as a legitimate Google Drive extension. Besides giving cybercriminals the ability to monitor the browsing history of their targeted victims, Rilide enables the injection of “malicious scripts to steal funds from cryptocurrency exchanges.”

In their blog post published on April 4, the two researchers Pawel Knapczyk and Wojciech Cieslak concede that Rilide is not the first malware to use malicious browser extensions. However, the researchers said they have seen how the malware tricks users before it drains funds from their respective crypto wallets.

“Where this malware differs is it has the effective and rarely used ability to utilize forged dialogs to deceive users into revealing their two-factor authentication (2FA) and then withdraw cryptocurrencies in the background,” the researchers argued.

While steps such as the pending enforcement of the so-called manifest v3 are expected to make life a little more difficult for cybercriminals, Knapczyk and Cieslak assert that this alone may not be enough “to solve the issue entirely as most of the functionalities leveraged by Rilide will still be available.”

Meanwhile, in their warning to users, the two researchers reiterated the importance of remaining “vigilant and sceptical” each time they received unsolicited emails. They added that users must “never assume that any content on the internet is safe, even if it appears to be.” Similarly, users should always strive to stay informed and educated about the latest events in the cybersecurity industry.

What are your thoughts on this story? Let us know what you think in the comments section below.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Bitcoin Falling, Sliding By Over 20%: This Is Why It Is Necessary

Bitcoin remains under immense liquidation pressure at press time After two days of lower lows, not only did bears reject $63,000 but cratered below May 2024 lows today BTC Drop Purging Speculators,

Donald Trump 2024 Victory May Fuel Year-End Bitcoin Price Surge, Report Finds

As the US presidential election approaches, crypto traders and analysts are speculating that a victory for Donald Trump in November could significantly boost the Bitcoin price to new heights,

Bitcoin Price Collapse: Analyst Forecasts $44,000 Plunge On 200 Daily EMA Breakdown

The cryptocurrency market witnessed a significant setback as the Bitcoin price plummeted below the $58,000 level This downward move has raised concerns among bullish investors, suggesting a potential

Tangem Partners With Visa to Launch Self-Custodial Crypto Payment Card

Hardware wallet firm Tangem AG is collaborating with Visa to launch a self-custodial payment solution This collaboration introduces a Visa payment card integrated with a hardware wallet, allowing

LayerZero Bounces Amid Market Retrace, ZRO Soars 20%

LayerZero (ZRO) has become one of the first altcoins to bounce amid the market retrace The token has registered green numbers despite its controversial token airdrop last month  As a result,

Bitcoin’s Brutal Dip: Only 5 Mining Machines Still Profitable as Market Tumbles

As Bitcoin dips below the $55,000 mark, the implications for cryptocurrency mining are quite significant, raising concerns across the industry Particularly, the recent drop in Bitcoin’s value