Inferno Malware Masqueraded as Coinbase, Drained $87 Million from 137,000 Victims
ID: 9e836081-7362-5cf5-974b-e734e6225a72
STIX ID: report--9e836081-7362-5cf5-974b-e734e6225a72
Feed Name: The Hacker News
Inferno Drainer was a large-scale crypto phishing/drainer operation active from November 2022 to November 2023 that spun up over 16,000 malicious domains and used JavaScript drainers (initially hosted via GitHub) and spoofed Web3 protocol pages to lure users into connecting wallets and approving fraudulent transactions, reportedly stealing about $87 million from ~137,000 victims; the service operated as a scam-as-a-service offering affiliate access and hosting, and employed evasion techniques like disabling view-source to hide malicious scripts.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
