logo

Inferno Malware Masqueraded as Coinbase, Drained $87 Million from 137,000 Victims

ID: 9e836081-7362-5cf5-974b-e734e6225a72

STIX ID: report--9e836081-7362-5cf5-974b-e734e6225a72

Feed Name: The Hacker News

Threat Score
80/100

Date Published: 2024-01-16

Date Updated: 2026-04-24

Author: [email protected] (The Hacker News)

...
...

Inferno Drainer was a large-scale crypto phishing/drainer operation active from November 2022 to November 2023 that spun up over 16,000 malicious domains and used JavaScript drainers (initially hosted via GitHub) and spoofed Web3 protocol pages to lure users into connecting wallets and approving fraudulent transactions, reportedly stealing about $87 million from ~137,000 victims; the service operated as a scam-as-a-service offering affiliate access and hosting, and employed evasion techniques like disabling view-source to hide malicious scripts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.