Cybercriminals abused GitHub, YouTube and VirusTotal to push crypto-stealing malware
ID: e619b803-c631-514f-b068-a79ac436bc2d
STIX ID: report--e619b803-c631-514f-b068-a79ac436bc2d
Feed Name: Help Net Security
Threat Score
Check Point researchers uncovered a coordinated campaign distributing Rust-based clipboard hijackers disguised as crypto trading/gambling tools for Windows and macOS. Attackers used fake GitHub/SourceForge popularity, a phishing WordPress site, AI-narrated YouTube tutorials, and inflated reviews/downloads to lure victims; over 15,500 attacker-controlled wallet addresses and tens of thousands of downloads were observed, and IOCs have been published to help defenders.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
