Cryptocurrency Scam Alert: Mac Exchange Users Targeted

Cryptocurrency Scam Alert: Mac Exchange Users Targeted
фото показано с : newsbtc.com

2019-2-1 00:00

Reports by a cyber security firm claim to have identified a piece of malware designed to beat the two-factor authentication commonly used to help protect various online accounts. The software steals credentials, including browser cookies, to allow access to cryptocurrency exchange accounts. CookieMiner, as the malware is known, targets exclusively Mac users owing to the cross-device functionality of Apple’s products.

In addition to stealing login details and creatively subverting security precautions, the CookieMiner malware also uses the victim’s machine to covertly mine an obscure digital asset called Koto.

Mac Users Beware: CookieMiner Malware Puts Cryptocurrency Traders at Risk

According to research conducted by Palo Alto Networks, a new piece of malware is targeting Mac users. The cyber security firm have nicknamed the attack “CookieMiner”. This is because the software steals cookies from a victim’s infected machine, along with covertly mining cryptocurrency to enrich those behind the scam – known as cryptojacking.

Since cryptocurrency exchanges use multiple layers of security precautions,  a series of different steps are taken to gain access to accounts:

Google Chrome and Apple Safari cookies are stolen. Saved usernames and credit card information from Chrome are stolen. Text messages backed up to Mac are stolen from victims’ iPhone. Browser cookies are stolen to defeat login anomaly detection.

CookieMiner’s primary purpose is to gain access to Mac users’ accounts at popular digital currency exchanges. However, since exchanges make use of heightened security procedures when users login, their credentials alone are not usually enough to compromise an account. That is why CookieMiner also attempts to trick the exchanges’ automated account protection procedures by also stealing browser cookies. These are used to ensure that the device used to sign in is not flagged as suspicious, even though the account’s owner will never have used that device before.

Cyber criminals are getting increasingly creative when it comes to stealing cryptocurrency.

With this combination of login credentials and cookies, attackers can often bypass the two-factor authentication process protecting accounts. This gives them full access to any cryptocurrency the victim has stored at the compromised exchange account.

CookieMiner Also Mines Cryptocurrency on Behalf of its Victims

Since the malware provides no guarantees of revenue for those behind it, CookieMiner also installs mining software on the infected machine. Palo Alto Networks claim that the program is made to look like a piece of Monero-mining software. However, instead of mining the most frequently cryptojacked asset, it sets Mac users’ machine mining Koto, another privacy-focused cryptocurrency associated with Japan that can be mined using just a CPU.

Of course, this is hardly the first example of cryptojacking NewsBTC has reported on. Previous example have included efforts by North Korean hackers to earn revenue outside of typical international trade, which the rogue nation is largely excluded from. There is, however, no evidence as of yet to suggest that the CookieMiner attack is related to these past examples.

 

Related Reading: Security Firm Avast Demonstrates Cryptojacking Risks to Smartphones and IoT Devices

Featured Images from Shutterstock.

The post Cryptocurrency Scam Alert: Mac Exchange Users Targeted appeared first on NewsBTC.

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

Global Cryptocurrency (GCC) на Currencies.ru

$ 0 (+0.00%)
Объем 24H $0
Изменеия 24h: 0.00 %, 7d: 0.00 %
Cегодня L: $0 - H: $0
Капитализация $0 Rank 99999
Цена в час новости $ 0.0014758 (-100%)

users exchange mac cryptocurrency malware targeted accounts

users exchange → Результатов: 126


Bitstamp Requires Its Users Provide Additional Info, To Align Itself With Regulators

Bitstamp cryptocurrency exchange moves forward to comply with regulations and requires its users to provide information about their original source of wealth. The company informed its users about the change in the exchange’s policy via emails sent on Wednesday and asked them to submit additional information on the trading platform. Related Reading | Iran’s Illegal […]

2022-4-19 07:00


Quidax Exchange Launches Blockchain And Cryptocurrency Education Operations In Nigeria

A cryptocurrency exchange based in Europe, Quidax, has launched its digital asset exchange in Nigeria, aiming to educate the residents about cryptocurrencies and blockchain technology. The exchange will allow users to buy and sell six cryptocurrencies, which include Bitcoin Cash, Bitcoin Gold, Ethereum, Bitcoin, Litecoin, and Ripple. The platform will, however, expand to support more […]

2018-10-29 01:58


Фото:

Ethfinex Hopes to Break Stalemate by Offering In-Platform ICOs and Token Sales

Ethfinex plans to host token sales and ICOs within its platform. The company has developed what they believe to be a more equitable method for involving investors in ICOs. Will Decentralized ICOs Level the Playing Field? Ethfinex will soon offer users the opportunity to participate in token sales and ICOs provided directly through the exchange platform.

2018-10-27 08:00


Фото:

Poloniex Revised Terms of Use, Shutters Services in Several Countries

With a revision to the popular exchange’s terms of use, users from a handful of jurisdictions will have their access to Poloniex shuttered. According to an October 18, 2018, update, “the websites and the services offered by Poloniex (as defined below) are NOT addressed to persons who have their registered office or place of residence in China, Germany, Pakistan, the U.

2018-10-26 22:46


Децентрализованная биржа IDEX внесла ограничения для трейдеров из Нью-Йорка

С 25 октября трейдеры из штата Нью-Йорк больше не смогут размещать ордера на позиционирующей себя в качестве «децентрализованной» криптовалютной бирже International Distributed Ethereum Exchange (IDEX).

2018-10-24 15:37


cosquare ICO

cosquare is a globally scalable social marketplace with the potential to transform how a generation of social media users shop. Serving consumers, influencers and brands, cosquare merges the worlds of blockchain technology, social media and e-commerce to create a fun and gamified social shopping experience.

2018-10-22 17:05


Фото:

Decentralized Exchange Bisq Sets New Record Bitcoin Trading Volume

Decentralized Bitcoin exchange Bisq revealed October 2018 has become the most successful month in its history, transacting over $3 million so far. Bisq’s $3M Month In a curious countertrend to the current lackluster Bitcoin trading environment which stems from low prices, Bisq set a new trade volume record for the week ending October 20, data from Coin Dance shows.

2018-10-22 13:00


Gilbraltar Approves 2nd Distributed Ledger Technology License to Covesting Exchange

Covesting, a cryptocurrency exchange and trading platform that lets its users sell and buy digital assets like cryptocurrencies and monitor their trades, will be operating in Gibraltar soon. The company has announced today, October 19, that it was awarded a license to use the distributed ledger technology (blockchain) in the Gibraltar island. The license was […]

2018-10-20 18:10